Description
Unspecified vulnerability in the XSL Content portlet in Liferay Portal Community Edition (CE) 5.x and 6.x before 6.0.6 GA, when Apache Tomcat is used, allows remote attackers to execute arbitrary commands via unknown vectors.
Remediation
References
Related Vulnerabilities
Ruby 7PK - Security Features Vulnerability (CVE-2015-3900)
WordPress Plugin Custom Map Cross-Site Scripting (1.1)
WordPress 4.3.x Cross-Site Request Forgery (4.3 - 4.3.18)
WordPress Plugin WP Background Takeover Directory Traversal (4.1.4)
Jboss EAP Missing Authorization Vulnerability (CVE-2019-10184)