Количество 2
Количество 2
CVE-2020-15841
Liferay Portal before 7.3.0, and Liferay DXP 7.0 before fix pack 89, 7.1 before fix pack 17, and 7.2 before fix pack 4, does not safely test a connection to a LDAP server, which allows remote attackers to obtain the LDAP server's password via the Test LDAP Connection feature.
GHSA-773f-f929-qgjj
Liferay Portal and Liferay DXP Potentially Reveal LDAP Server Password via Unsafe Connection
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-15841 Liferay Portal before 7.3.0, and Liferay DXP 7.0 before fix pack 89, 7.1 before fix pack 17, and 7.2 before fix pack 4, does not safely test a connection to a LDAP server, which allows remote attackers to obtain the LDAP server's password via the Test LDAP Connection feature. | CVSS3: 8.3 | 0% Низкий | больше 5 лет назад | |
GHSA-773f-f929-qgjj Liferay Portal and Liferay DXP Potentially Reveal LDAP Server Password via Unsafe Connection | CVSS3: 8.3 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу