CVE-2013-0314
Last modified
CVE-2013-0314 is a vulnerability of currently unknown severity. The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication when importing Zip files, which allows remote attackers to modify site contents, remove the site, or alter the access controls for portlets.. EPSS estimates a 1.64% chance of exploitation in the next 30 days.
Description
The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication when importing Zip files, which allows remote attackers to modify site contents, remove the site, or alter the access controls for portlets.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Jboss Enterprise Portal Platform | 5.2.2 |
References
- http://rhn.redhat.com/errata/RHSA-2013-0613.htmlVendor Advisory
- http://secunia.com/advisories/52552Vendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0613.htmlVendor Advisory
- http://secunia.com/advisories/52552Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-0314?
How severe is CVE-2013-0314?
How do I fix CVE-2013-0314?
Are you affected by CVE-2013-0314?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
