CVE-2018-10795
Last modified
CVE-2018-10795 is a vulnerability of currently unknown severity. Liferay 6.2.x and before has an FCKeditor configuration that allows an attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment via a browser/liferay/browser.html?Type= or html/js/editor/fckeditor/editor/filemanager/browser/liferay/browser.html URI. NOTE: the vendor disputes this issue because file upload is an expected feature, subject to Role Based Access Control checks where only authenticated users with proper permissions can upload files. EPSS estimates a 1.79% chance of exploitation in the next 30 days.
Description
Liferay 6.2.x and before has an FCKeditor configuration that allows an attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment via a browser/liferay/browser.html?Type= or html/js/editor/fckeditor/editor/filemanager/browser/liferay/browser.html URI. NOTE: the vendor disputes this issue because file upload is an expected feature, subject to Role Based Access Control checks where only authenticated users with proper permissions can upload files
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Liferay | Liferay Portal | <= 6.2.5 |
References
- https://cxsecurity.com/issue/WLB-2018050029Exploit, Third Party Advisory
- https://cxsecurity.com/issue/WLB-2018050029Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-10795?
How severe is CVE-2018-10795?
How do I fix CVE-2018-10795?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-10778Read access violation in the III_dequantize_sample function …
- CVE-2018-10779TIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap…
- CVE-2018-1078OpenDayLight version Carbon SR3 and earlier contain a vulner…
- CVE-2018-10780Exiv2::Image::byteSwap2 in image.cpp in Exiv2 0.26 has a hea…
- CVE-2018-1079pcs before version 0.9.164 and 0.10 is vulnerable to a privi…8.7
- CVE-2018-10790The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5…7.5
- CVE-2018-10796In 2345 Security Guard 3.7, the driver file (2345NetFirewall…
- CVE-2018-10798A hang issue was discovered in Brave before 0.14.0 (on, for …
- CVE-2018-10799A hang issue was discovered in Brave before 0.14.0 (on, for …
- CVE-2018-1080Dogtag PKI, through version 10.6.1, has a vulnerability in A…7.5
- CVE-2018-10801TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory lea…
- CVE-2018-10803Cross-site scripting (XSS) vulnerability in the add credenti…
Are you affected by CVE-2018-10795?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
