Lucene search

K
cvelistMitreCVELIST:CVE-2014-3416
HistoryMay 29, 2014 - 2:00 p.m.

CVE-2014-3416

2014-05-2914:00:00
mitre
www.cve.org
7

AI Score

7.5

Confidence

High

EPSS

0.002

Percentile

60.0%

uPortal before 4.0.13.1 does not properly check the MANAGE permissions, which allows remote authenticated users to manage arbitrary portlets by leveraging the SUBSCRIBE permission for the portlet-admin portlet.

AI Score

7.5

Confidence

High

EPSS

0.002

Percentile

60.0%

Related for CVELIST:CVE-2014-3416