2.6
CVSSv2

CVE-2019-6588

Published: 03/06/2019 Updated: 12/06/2019
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
CVSS v3 Base Score: 4.7 | Impact Score: 2.7 | Exploitability Score: 1.6
VMScore: 265
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

In Liferay Portal prior to 7.1 CE GA4, an XSS vulnerability exists in the SimpleCaptcha API when custom code passes unsanitized input into the "url" parameter of the JSP taglib call <liferay-ui:captcha url="<%= url %>" /> or <liferay-captcha:captcha url="<%= url %>" />. Liferay Portal out-of-the-box behavior with no customizations is not vulnerable.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

liferay liferay portal 7.1.0

liferay liferay portal 7.0.4

liferay liferay portal 7.0.3

liferay liferay portal 7.0.0

liferay liferay portal 6.2.4

liferay liferay portal 6.2.3

liferay liferay portal 6.2.2

liferay liferay portal 6.2.0

liferay liferay portal 6.1.0

liferay liferay portal

liferay liferay portal 7.0.6

liferay liferay portal 7.0.5

liferay liferay portal 6.2.5

liferay liferay portal 7.0.2

liferay liferay portal 7.0.1

liferay liferay portal 6.2.1

liferay liferay portal 6.1.2

liferay liferay portal 6.1.1

Exploits

# Exploit Title: Liferay Portal &lt; 71 CE GA4 / SimpleCaptcha API XSS # Date: 04/06/2019 # Exploit Author: Valerio Brussani (@val_brux) # Website: wwwvalbruxit # Vendor Homepage: wwwliferaycom/ # Software Link: wwwliferaycom/it/downloads-community # Version: &lt; 71 CE GA4 # Tested on: Liferay Portal 71 CE GA3 # CVE: CVE-2 ...
Liferay Portal version 71 CE GA4 suffers from cross site scripting vulnerability in the SimpleCaptcha API ...