about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Liferay Enterprise Portal Multiple XSS Vulnerabilities


Title Liferay Enterprise Portal Multiple XSS Vulnerabilities
Published 2004-05-22-12:00AM
Updated 2004-11-25-05:23PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovered by Sandeep Giri.
Vulnerable  Liferay Enterprise Portal 2.1.1
Liferay Enterprise Portal 2.1 .0
Liferay Enterprise Portal 2.0 .x
Liferay Enterprise Portal 1.x
Liferay Enterprise Portal
Not Vulnerable  Liferay Enterprise Portal 2.2 .0
Code   There is no exploit code possible. The following example was provided:

Test:
Add a message with subject <script>history.go(-1)</script>
Now, no user can see message board.
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 04:40:09 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.yt-led www.webziy 200 /compo php-nuke+2 system of HOTXY.COM wwwphonero And one st news for C Www.indea. Hotbaby.Co sex99% GET+%252F+ sex klips hot hot xx Kiki fatma Video+sexs maxcpm.inf WebFOCUS s;suvfn hq69 .php SQL I vuln/explo Bijaypradh Hot pictur jyjy 200 /compo local esca sexgarl mulheres d skins/adva xxxvideo.c cartounsex abb tirsha sex php-nuke 7 rituparna www.zoo9.c bobile+mov http:/www. www.squido ip+board+2 micro http nian thara Total Cale club.banda opencommer Indiangirl boogie men hack rocke