Vulnerabilities
Vulnerable Software
Liferay:  >> Liferay Portal  >> 6.2  Security Vulnerabilities
Liferay Portal through 6.2.10 allows remote authenticated users to execute arbitrary shell commands via a crafted Velocity template.
CVSS Score
8.8
EPSS Score
0.015
Published
2017-01-13
Cross-site scripting (XSS) vulnerability in Liferay Portal Enterprise Edition (EE) 6.2 SP8 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the _20_body parameter in the comment field in an uploaded file.
CVSS Score
3.5
EPSS Score
0.003
Published
2014-11-24


Contact Us

Shodan ® - All rights reserved