Lucene search

K
cvelistMitreCVELIST:CVE-2014-3417
HistoryMay 29, 2014 - 2:00 p.m.

CVE-2014-3417

2014-05-2914:00:00
mitre
www.cve.org
4

AI Score

6.2

Confidence

Low

EPSS

0.002

Percentile

60.0%

uPortal before 4.0.13.1 does not properly check the CONFIG permission, which allows remote authenticated users to configure portlets by leveraging the SUBSCRIBE permission for a portlet.

AI Score

6.2

Confidence

Low

EPSS

0.002

Percentile

60.0%

Related for CVELIST:CVE-2014-3417