Cross-site request forgery (CSRF) vulnerability in the Admin portlet in Liferay Portal before 4.4.0 allows remote authenticated users to perform unspecified actions as unspecified other authenticated users via the Shutdown message.
                
            References
                    | Link | Resource | 
|---|---|
| http://support.liferay.com/browse/LEP-4739 | |
| http://www.kb.cert.org/vuls/id/767825 | US Government Resource | 
| http://secunia.com/advisories/28742 | Vendor Advisory | 
Configurations
                    Information
                Published : 2008-02-04 16:00
Updated : 2008-09-05 14:34
NVD link : CVE-2008-0182
Mitre link : CVE-2008-0182
JSON object : View
CWE
                
                    
                        
                        CWE-352
                        
            Cross-Site Request Forgery (CSRF)
Products Affected
                liferay
- liferay_enterprise_portal
 


