Vulnerabilities (CVE)

Filtered by vendor Redhat Subscribe
Filtered by product Jboss Enterprise Portal Platform
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-0315 1 Redhat 1 Jboss Enterprise Portal Platform 2013-04-15 5.0 MEDIUM N/A
The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 allows remote attackers to read arbitrary files via a crafted external XML entity in an XML document, aka an XML Entity Expansion (XEE) attack.
CVE-2012-5531 1 Redhat 1 Jboss Enterprise Portal Platform 2013-01-18 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in the GateIn Portal in JBoss Enterprise Portal Platform 5.2.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.