Количество 2
Количество 2
CVE-2022-42123
A Zip slip vulnerability in the Elasticsearch Connector in Liferay Portal 7.3.3 through 7.4.3.18, and Liferay DXP 7.3 before update 6, and 7.4 before update 19 allows attackers to create or overwrite existing files on the filesystem via the installation of a malicious Elasticsearch Sidecar plugin.
GHSA-hffx-r282-w2g9
Path Traversal in Liferay Portal
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-42123 A Zip slip vulnerability in the Elasticsearch Connector in Liferay Portal 7.3.3 through 7.4.3.18, and Liferay DXP 7.3 before update 6, and 7.4 before update 19 allows attackers to create or overwrite existing files on the filesystem via the installation of a malicious Elasticsearch Sidecar plugin. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад | |
GHSA-hffx-r282-w2g9 Path Traversal in Liferay Portal | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу