cbcvebase.
CVE-2017-17868
published 2017-12-27

CVE-2017-17868: In Liferay Portal 6.1.0, the tags section has XSS via a Public Render Parameter (p_r_p) value, as demonstrated by p_r_p_564233524_tag.

medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
In Liferay Portal 6.1.0, the tags section has XSS via a Public Render Parameter (p_r_p) value, as demonstrated by p_r_p_564233524_tag.

Affected

1 ranges
VendorProductVersion rangeFixed in
liferayliferay_portal