Логотип exploitDog
bind:CVE-2023-44309
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-44309

Количество 2

Количество 2

nvd логотип

CVE-2023-44309

больше 2 лет назад

Multiple stored cross-site scripting (XSS) vulnerabilities in the fragment components in Liferay Portal 7.4.2 through 7.4.3.53, and Liferay DXP 7.4 before update 54 allow remote attackers to inject arbitrary web script or HTML via a crafted payload injected into any non-HTML field of a linked source asset.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-j663-6jpj-xx8c

больше 2 лет назад

Liferay Portal and Liferay DXP Vulnerable to XSS in the Fragment Components

CVSS3: 9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-44309

Multiple stored cross-site scripting (XSS) vulnerabilities in the fragment components in Liferay Portal 7.4.2 through 7.4.3.53, and Liferay DXP 7.4 before update 54 allow remote attackers to inject arbitrary web script or HTML via a crafted payload injected into any non-HTML field of a linked source asset.

CVSS3: 9
0%
Низкий
больше 2 лет назад
github логотип
GHSA-j663-6jpj-xx8c

Liferay Portal and Liferay DXP Vulnerable to XSS in the Fragment Components

CVSS3: 9
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу