← Back

CVE-2019-16891

nvd nist
Published: Oct 4, 2019Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Liferay Portal CE 6.2.5 allows remote command execution because of deserialization of a JSON payload.

Affected (75)

1 product
Liferay Portal
Configuration A
75 vulnerable
Vulnerable SoftwareAffected Versions
Liferay
Up to 6.0.6
Version 6.1.0 b1
Version 6.1.0 b2
Version 6.1.0 b3
Version 6.1.0 b4
Version 6.1.0 ga1
Version 6.1.0 rc1
Version 6.1.1 ga2
Version 6.1.2 ga3
Version 6.2.0 b1
Version 6.2.0 b2
Version 6.2.0 ga1
Version 6.2.0 m1
Version 6.2.0 m2
Version 6.2.0 m3
Version 6.2.0 m4
Version 6.2.0 m5
Version 6.2.0 m6
Version 6.2.0 rc1
Version 6.2.0 rc2
Version 6.2.0 rc3
Version 6.2.0 rc4
Version 6.2.0 rc5
Version 6.2.0 rc6
Version 6.2.1 ga2
Version 6.2.2 ga3
Version 6.2.3 ga4
Version 6.2.4 ga5
Version 6.2.5 ga6
Version 7.0.0 a1
Version 7.0.0 a2
Version 7.0.0 a3
Version 7.0.0 a4
Version 7.0.0 a5
Version 7.0.0 b1
Version 7.0.0 b2
Version 7.0.0 b3
Version 7.0.0 b4
Version 7.0.0 b5
Version 7.0.0 b6
Version 7.0.0 b7
Version 7.0.0 ga1
Version 7.0.0 m1
Version 7.0.0 m2
Version 7.0.0 m3
Version 7.0.0 m4
Version 7.0.0 m5
Version 7.0.0 m6
Version 7.0.0 m7
Version 7.0.1 ga2
Version 7.0.2 ga3
Version 7.0.3 ga4
Version 7.0.4 ga5
Version 7.0.5 ga6
Version 7.0.6 ga7
Version 7.1.0 a1
Version 7.1.0 a2
Version 7.1.0 b1
Version 7.1.0 b2
Version 7.1.0 b3
Version 7.1.0 ga1
Version 7.1.0 m1
Version 7.1.0 m2
Version 7.1.0 rc1
Version 7.1.1 ga2
Version 7.1.2 ga3
Version 7.1.3 ga4
Version 7.2.0 alpha1
Version 7.2.0 beta1
Version 7.2.0 beta2
Version 7.2.0 beta3
Version 7.2.0 m2
Version 7.2.0 rc1
Version 7.2.0 rc2
Version 7.2.0 rc3

References (8)

Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
ProductRelease Notes
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductRelease Notes
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit

Timeline

No history available yet.