Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0178 (Liferay Enterprise Portal)

BugsAlert Home > CVE-2008-0178 (Liferay Enterprise Portal)
 
 

Cross-site scripting (XSS) vulnerability in the Enterprise Admin Session Monitoring component in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web script or HTML via the User-Agent HTTP header.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0178

Learn more about CVE-2008-0178 (Liferay Enterprise Portal)
 
Tags: cve-2008-0178 liferay enterprise portal

Related Items

      VU#140129:Adobe Reader EScript.api arbitrary code execution

      Live Music Plus "id" SQL Injection Vulnerability

      CVE-2008-3570 (africa_be_gone)

      CVE-2007-6338 (CourseMill Enterprise Learning Management System)

      e107 my_gallery Plugin "file" Information Disclosure

      Debian update for clamav

      FrSIRT - Mandriva Security Update Fixes GNU ed Buffer Overflow Vulnerability

 

Pixel