Portfolio and Spring4Shell Vulnerabilities
On March 29th, 2022, CVE-2022-22963 and CVE-2022-22965 were reported detailing an exploit in the Spring Cloud, Spring MVC and Spring Webflux framework.
Solution
Portfolio does not utilize any of these frameworks and is not affected by these issues.
Related Articles
Portfolio, Log4j, Apache vulnerabilities
Who does this affect? This article applies to users running Portfolio 3.x and 4.x. Issue On December 10, 2021 researchers reported CVE-2021-44228, detailing an exploit in the Log4j library that allowed a malicious user to run code on an affected ...
Activating Portfolio
Affected Versions This article applies to Portfolio 3.6.0 and later versions. Solution Activating Portfolio with your Extensis account NOTE: Portfolio must connect to cwsg.extensis.com on port 443 to activate; for more information, go to Extensis ...
Licensing Portfolio
After you install Portfolio, you will need to license the software through Portfolio Administration before doing anything else. To start Portfolio Administration, start your browser, then enter the IP address of the server system, followed by :8091 ...
Portfolio Glossary
Following are some terms used throughout Portfolio and its documentation. Some are technical (“computer”) terms that relate to Portfolio features and services, some are fundamental concepts within Portfolio, and some are terms that relate to Digital ...
Portfolio checklist
Use this checklist to help you make sure you are ready to install and configure Portfolio. License Administrator Be sure to have the Extensis account information (email address and password) for your Portfolio License Administrator. You need this ...