Vulnerabilities
Vulnerable Software
Cross-site scripting (XSS) vulnerability in themes/_unstyled/templates/init.vm in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web script or HTML via the Greeting field in a User Profile.
CVSS Score
4.3
EPSS Score
0.006
Published
2008-02-05
Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Enterprise Portal 4.3.1 allows remote attackers to inject arbitrary web script or HTML via the emailAddress parameter in a Send New Password action, a different vector than CVE-2007-6055. NOTE: some of these details are obtained from third party information.
CVSS Score
4.3
EPSS Score
0.075
Published
2007-11-30


Contact Us

Shodan ® - All rights reserved