CVE-2011-1571
MEDIUM 6.9EPSS 8.5%
Unspecified vulnerability in the XSL Content portlet in Liferay Portal Community Edition (CE) 5.x and 6.x before 6.0.6 GA, when Apache Tomcat is used, allows remote attackers to execute arbitrary commands via unknown vectors.
- CVSS v4.0
- 6.9 MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N - CVSS v2.0
- 6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P - EPSS
- 8.47% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2011-05-07
- Updated
- 2024-09-17
Proof-of-concept exploits (2)
- noobpk/CVE-2011-15711★ · 2019-06-13
- yazgx97/CVE-2011-1571