Cross-Site Scripting Vulnerability in Liferay Portal by Liferay
CVE-2008-0180
Currently unrated
What is CVE-2008-0180?
A cross-site scripting (XSS) vulnerability exists in the Liferay Portal, specifically in the themes/_unstyled/templates/init.vm file. This flaw allows remote authenticated users to inject malicious web scripts or HTML into the Greeting field of a User Profile, potentially compromising the integrity of the web application and exposing users to various security risks.