The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication when importing Zip files, which allows remote attackers to modify site contents, remove the site, or alter the access controls for portlets.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2013-04-12T22:00:00Z
Updated: 2024-08-06T14:25:09.030Z
Reserved: 2012-12-06T00:00:00Z
Link: CVE-2013-0314
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-04-12T22:55:01.163
Modified: 2024-11-21T01:47:17.343
Link: CVE-2013-0314
Redhat