Логотип exploitDog
bind:CVE-2023-33943
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-33943

Количество 2

Количество 2

nvd логотип

CVE-2023-33943

больше 2 лет назад

Cross-site scripting (XSS) vulnerability in the Account module in Liferay Portal 7.4.3.21 through 7.4.3.62, and Liferay DXP 7.4 update 21 through 62 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a user's (1) First Name, (2) Middle Name, (3) Last Name, or (4) Job Title text field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-p9xg-9378-cqp7

больше 2 лет назад

Cross-site scripting in Liferay Portal

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-33943

Cross-site scripting (XSS) vulnerability in the Account module in Liferay Portal 7.4.3.21 through 7.4.3.62, and Liferay DXP 7.4 update 21 through 62 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a user's (1) First Name, (2) Middle Name, (3) Last Name, or (4) Job Title text field.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-p9xg-9378-cqp7

Cross-site scripting in Liferay Portal

CVSS3: 5.4
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу