Description
Liferay Portal through v7.3.6 and Liferay DXP through v7.3 were discovered to contain a cross-site scripting (XSS) vulnerability via the Edit Blog Entry function under the Blog module.
Remediation
References
Related Vulnerabilities
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2007-3997)
Oracle JRE CVE-2020-2655 Vulnerability (CVE-2020-2655)
Claroline Other Vulnerability (CVE-2006-1594)
WordPress Plugin Sitesassure WP Malware Scanner Cross-Site Scripting (1.0.1)
Atlassian Jira Improper Authentication Vulnerability (CVE-2021-41312)