Description
Liferay Portal through v7.4.0 and Liferay DXP through v7.1 were discovered to contain a cross-site scripting (XSS) vulnerability via the Gogo Shell module.
Remediation
References
Related Vulnerabilities
PHP Other Vulnerability (CVE-2015-6837)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-5342)
WordPress Plugin McAvoy Cross-Site Scripting (0.1.0)
WordPress Plugin Post Lists View Custom Cross-Site Scripting (1.7.1)
WordPress Plugin eHive Account Details Cross-Site Scripting (2.1.2)