6.8
CVSSv2

CVE-2011-1571

Published: 07/05/2011 Updated: 23/07/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in the XSL Content portlet in Liferay Portal Community Edition (CE) 5.x and 6.x prior to 6.0.6 GA, when Apache Tomcat is used, allows remote malicious users to execute arbitrary commands via unknown vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

liferay liferay portal

Exploits

## # $Id$ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' require 'active_support/json' class Metasploit3 < Msf::E ...

Github Repositories

Liferay XSL - Command Execution (Metasploit)

CVE-2011-1571 Summary Unspecified vulnerability in the XSL Content portlet in Liferay Portal Community Edition (CE) 5x and 6x before 606 GA, when Apache Tomcat is used, allows remote attackers to execute arbitrary commands via unknown vectors CVE Detail : wwwcvedetailscom/cve/CVE-2011-1571/ PoC : xhemyxwikiorg/xwiki/bin/view/XSLT/Application_Liferay Met