Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-62969
HistoryAug 05, 2021 - 12:00 a.m.

Liferay Portal and Liferay DXP Cross-Site Scripting Vulnerability (CNVD-2021-62969)

2021-08-0500:00:00
China National Vulnerability Database
www.cnvd.org.cn
15

0.001 Low

EPSS

Percentile

46.6%

Liferay Portal and Liferay DXP are both products of Liferay, a J2EE-based portal solution that uses EJB and JMS technologies and serves as a web publishing and shared workspace, enterprise collaboration platform, social network, etc. Liferay DXP is a digital experience collaboration platform. Liferay Portal and Liferay DXP are cross-site scripting vulnerabilities that can be exploited to insert arbitrary web scripts through the header of a modal window or HTML code through the header of the modal window.

CPENameOperatorVersion
liferay liferay portalle7.3.4

0.001 Low

EPSS

Percentile

46.6%

Related for CNVD-2021-62969