Liferay Portal Security Bypass and HTML Injection Vulnerabilities
BID:56226
Info
Liferay Portal Security Bypass and HTML Injection Vulnerabilities
| Bugtraq ID: | 56226 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 24 2012 12:00AM |
| Updated: | Mar 26 2014 12:54AM |
| Credit: | Matthew Kong, Kalman Vincze, Norbert Kocsis, Samuel Kong, and Amos Fong. |
| Vulnerable: |
Liferay Enterprise Portal 6.0.6 GA Liferay Enterprise Portal 6.0.5 GA Liferay Enterprise Portal 6.0.4 GA Liferay Enterprise Portal 6.1 GA1 EE Liferay Enterprise Portal 6.1 GA1 CE Liferay Enterprise Portal 6.1 ee Liferay Enterprise Portal 6.1 ce Liferay Enterprise Portal 6.1 Liferay Enterprise Portal 6.0.6 ce Liferay Enterprise Portal 6.0.5 ce Liferay Enterprise Portal 6.0 |
| Not Vulnerable: | |
Discussion
Liferay Portal Security Bypass and HTML Injection Vulnerabilities
Liferay Portal is prone to multiple security-bypass vulnerabilities and an HTML-injection vulnerability.
An attacker may leverage the HTML-injection issue to inject hostile HTML and script code that would run in the context of the affected site, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. The attacker may leverage the security-bypass issue to bypass certain security restrictions and perform unauthorized actions in the affected application.
Liferay Portal versions prior to 6.1 CE GA2 (6.1.1) are vulnerable.
Liferay Portal is prone to multiple security-bypass vulnerabilities and an HTML-injection vulnerability.
An attacker may leverage the HTML-injection issue to inject hostile HTML and script code that would run in the context of the affected site, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user. The attacker may leverage the security-bypass issue to bypass certain security restrictions and perform unauthorized actions in the affected application.
Liferay Portal versions prior to 6.1 CE GA2 (6.1.1) are vulnerable.
Exploit / POC
Liferay Portal Security Bypass and HTML Injection Vulnerabilities
Attackers can use a browser to exploit these issues.
Attackers can use a browser to exploit these issues.
Solution / Fix
Liferay Portal Security Bypass and HTML Injection Vulnerabilities
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
Liferay Portal Security Bypass and HTML Injection Vulnerabilities
References:
References:
- Liferay Homepage (Liferay)