Description
In Liferay Portal 6.1.0, the tags section has XSS via a Public Render Parameter (p_r_p) value, as demonstrated by p_r_p_564233524_tag.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2592 Vulnerability (CVE-2019-2592)
WordPress CVE-2011-3125 Vulnerability (CVE-2011-3125)
WordPress Plugin WooCommerce HTML Injection (6.5.1)
WordPress Plugin Weather for us-animated weather widget Crypto Mining (1.8)
Artifactory Insufficiently Protected Credentials Vulnerability (CVE-2020-2165)