Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-33943
HistoryMay 24, 2023 - 3:15 p.m.

Cross site scripting

2023-05-2415:15:00
PRIOn knowledge base
www.prio-n.com
3
cross-site scripting
remote attackers
arbitrary web script
html
crafted payload
user data
security vulnerability
liferay portal
liferay dxp

0.001 Low

EPSS

Percentile

22.8%

Cross-site scripting (XSS) vulnerability in the Account module in Liferay Portal 7.4.3.21 through 7.4.3.62, and Liferay DXP 7.4 update 21 through 62 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a user’s (1) First Name, (2) Middle Name, (3) Last Name, or (4) Job Title text field.

0.001 Low

EPSS

Percentile

22.8%

Related for PRION:CVE-2023-33943