CVE-2004-2030

Multiple cross-site scripting (XSS) vulnerabilities in index.jsp for Liferay before 2.2.0 release 10/1/2004 allow remote attackers to inject arbitrary web script or HTML, as demonstrated using the message subject.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:liferay:liferay_enterprise_portal:*:*:*:*:*:*:*:*
cpe:2.3:a:liferay:liferay_enterprise_portal:2.1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-05-22 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2004-2030

Mitre link : CVE-2004-2030

CVE.ORG link : CVE-2004-2030


JSON object : View

Products Affected

liferay

  • liferay_enterprise_portal
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')