Liferay Inc.

Short Name: [None Entered]
Previous Names: [None Entered]
URL: [None Entered]
Email: [None Entered]
Security URL: [None Entered]
Security Email: [None Entered]
Knowledge Base: [None Entered]
Notes: [No Notes]

Vulnerabilities by Vendor Product

Liferay Inc.

Liferay Inc.
Portal Enterprise Watch-list
3.6.1
OSVDB ID: 21812 Liferay Portal Enterprise portal_ent Multiple Parameter XSS
Enterprise Portal Watch-list
Unknown or Unspecified
OSVDB ID: 6346 Liferay Enterprise Portal index.jsp Multiple Parameter XSS
Liferay Portal Watch-list
6.1
OSVDB ID: 81291 Liferay Portal JSON Webservices Admin User Creation
6.1 CE
OSVDB ID: 81278 Liferay Portal JSON Request Parsing memcached Reconfiguration
OSVDB ID: 82028 Liferay Portal UserServiceUtil Class updateOrganizations Method Arbitrary Organization User Addition
OSVDB ID: 82029 Liferay Portal Forward Target Handling IP Filter Bypass
6.0.5 ce
OSVDB ID: 81292 Liferay Portal webdav Request Parsing Arbitrary File Access
6.0.6 ce
OSVDB ID: 81292 Liferay Portal webdav Request Parsing Arbitrary File Access
6.1 CE
6.1 EE
OSVDB ID: 82028 Liferay Portal UserServiceUtil Class updateOrganizations Method Arbitrary Organization User Addition
6.1 CE
6.1 EE
OSVDB ID: 82029 Liferay Portal Forward Target Handling IP Filter Bypass
6.1 CE
OSVDB ID: 82031 Liferay Portal html/portal/upload_progress_poller.jsp uploadProgressId Parameter XSS
OSVDB ID: 82032 Liferay Portal Journal Article Editing ckEditorConfigFileName Parameter XSS
OSVDB ID: 82033 Liferay Portal Currency Converter Viewing _16_chartId Parameter XSS
OSVDB ID: 82034 Liferay Portal Blog Category Viewing tag Parameter XSS
OSVDB ID: 82030 Liferay Portal Information Disclosure CSRF
6.1 EE
OSVDB ID: 82031 Liferay Portal html/portal/upload_progress_poller.jsp uploadProgressId Parameter XSS
OSVDB ID: 82032 Liferay Portal Journal Article Editing ckEditorConfigFileName Parameter XSS
OSVDB ID: 82033 Liferay Portal Currency Converter Viewing _16_chartId Parameter XSS
OSVDB ID: 82034 Liferay Portal Blog Category Viewing tag Parameter XSS
OSVDB ID: 82030 Liferay Portal Information Disclosure CSRF
5.2
OSVDB ID: 82031 Liferay Portal html/portal/upload_progress_poller.jsp uploadProgressId Parameter XSS
OSVDB ID: 82032 Liferay Portal Journal Article Editing ckEditorConfigFileName Parameter XSS
OSVDB ID: 82033 Liferay Portal Currency Converter Viewing _16_chartId Parameter XSS
OSVDB ID: 82034 Liferay Portal Blog Category Viewing tag Parameter XSS
6.1 CE
6.1 EE
5.2
6.1 CE
6.1 EE
5.2
6.1 CE
6.1 EE
5.2
6.1 CE
6.1 EE
6.1.0 CE GA1
OSVDB ID: 85588 Liferay Portal Unspecified Arbitrary File Deletion
6.1.10 EE GA1
OSVDB ID: 85588 Liferay Portal Unspecified Arbitrary File Deletion
6.1 CE GA2 (6.1.1)
OSVDB ID: 86590 Liferay Portal Crafted URL Parsing Private Announcement Information Disclosure
OSVDB ID: 86593 Liferay Portal setupwizard Default Account
6.1 CE GA2 (6.1.1)
OSVDB ID: 86591 Liferay Portal Membership Requests Comments Field XSS
6.1 CE GA2 (6.1.1)
OSVDB ID: 86592 Liferay Portal Crafted URL Parsing Arbitrary User Account Deletion
6.1 CE GA2 (6.1.1)
6.1 CE GA2 (6.1.1)
OSVDB ID: 86594 Liferay Portal Organization Permission Handling Omni-Admin Password Manipulation
6.1 CE GA2 (6.1.1)
OSVDB ID: 87565 Liferay Portal Journal Structure / Template Unspecified Source Code Disclosure
6.1 CE GA2 (6.1.1)
OSVDB ID: 87566 Liferay Portal KB Plugin File Name Validation Arbitrary File Deletion
6.1 CE GA2 (6.1.1)
OSVDB ID: 87567 Liferay Portal Document and Media Portlet Permission Verification Arbitrary File Creation
6.1 CE
OSVDB ID: 90256 Liferay Portal open_search Unauthenticated User Name / Email Address Disclosure



The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use