The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication when importing Zip files, which allows remote attackers to modify site contents, remove the site, or alter the access controls for portlets.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2013-04-12T22:00:00Z

Updated: 2013-04-12T22:00:00Z

Reserved: 2012-12-06T00:00:00Z


Link: CVE-2013-0314

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2013-04-12T22:55:01.163

Modified: 2013-04-15T04:00:00.000


Link: CVE-2013-0314

JSON object: View

cve-icon Redhat Information

No data.

CWE