PoC Index

CVE-2011-1571

MEDIUM 6.9EPSS 8.5%

Unspecified vulnerability in the XSL Content portlet in Liferay Portal Community Edition (CE) 5.x and 6.x before 6.0.6 GA, when Apache Tomcat is used, allows remote attackers to execute arbitrary commands via unknown vectors.

CVSS v4.0
6.9 MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
8.47% chance of exploitation in the next 30 days, 95th percentile
Published
2011-05-07
Updated
2024-09-17

Proof-of-concept exploits (2)

ExploitDB entries (1)

References

Related