liferay

340 tracked vulnerabilities.

CVE-2011-1503
Liferay Portal CE <6.0.6 - Info Disclosure
May 07, 2011
EPSS 0.01
CVE-2011-1502
Liferay Portal 6.0.0-6.0.5 - Authenticated XML External Entity Injection
May 07, 2011
EPSS 0.01
CVE-2010-5327 HIGH
Liferay Portal <6.2.10 - Command Injection
Jan 13, 2017
CVSS 8.8
EPSS 0.01
CVE-2009-3742
Liferay Portal < 5.2.3 - Cross-Site Scripting via p_p_id Parameter
Jan 07, 2010
EPSS 0.01
CVE-2009-1294
Novell Teaming 1.0-1.0.3 - Cross-Site Scripting via p_p_state or p_p_mode Parameters
Apr 16, 2009
EPSS 0.03
CVE-2008-0178
Liferay Enterprise Portal 4.3.6 - Authenticated Cross-Site Scripting via User-Agent HTTP Header
Feb 05, 2008
EPSS 0.10
CVE-2008-0179
Liferay Enterprise Portal 4.3.6 - Cross-Site Scripting via User-Agent HTTP Header
Feb 05, 2008
EPSS 0.02
CVE-2008-0180
Liferay Enterprise Portal 4.3.6 - Authenticated Cross-Site Scripting via User Profile Greeting Field
Feb 05, 2008
EPSS 0.01
CVE-2008-0181
Liferay Enterprise Portal 4.3.6 - Authenticated Cross-Site Scripting via Shutdown Message
Feb 05, 2008
EPSS 0.01
CVE-2008-0182
Liferay Enterprise Portal < 4.3.6 - Authenticated Cross-Site Request Forgery via Shutdown Message
Feb 05, 2008
EPSS 0.00
CVE-2008-0563
Liferay Portal 4.3.6 - Cross-Site Request Forgery via User-Agent HTTP Header
Feb 05, 2008
EPSS 0.00
CVE-2007-6173
Liferay Enterprise Portal 4.3.1 - XSS
Nov 30, 2007
EPSS 0.08
CVE-2007-6055
Liferay Portal 4.1.0 and 4.1.1 - Cross-Site Scripting via Login Parameter
Nov 20, 2007
EPSS 0.08
CVE-2005-4400
Liferay Portal Enterprise <3.6.1 - XSS
Dec 20, 2005
EPSS 0.02
CVE-2004-2030
Liferay Enterprise Portal < 2.2.0 - Cross-Site Scripting via Message Subject
May 22, 2004
EPSS 0.01