Количество 2
Количество 2
CVE-2021-33323
The Dynamic Data Mapping module in Liferay Portal 7.1.0 through 7.3.2, and Liferay DXP 7.1 before fix pack 19, and 7.2 before fix pack 7, autosaves form values for unauthenticated users, which allows remote attackers to view the autosaved values by viewing the form as an unauthenticated user.
GHSA-fxpf-jr2q-vpvv
Liferay Portal and Liferay DXP autosaves form data for other users to see
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-33323 The Dynamic Data Mapping module in Liferay Portal 7.1.0 through 7.3.2, and Liferay DXP 7.1 before fix pack 19, and 7.2 before fix pack 7, autosaves form values for unauthenticated users, which allows remote attackers to view the autosaved values by viewing the form as an unauthenticated user. | CVSS3: 7.5 | 0% Низкий | больше 4 лет назад | |
GHSA-fxpf-jr2q-vpvv Liferay Portal and Liferay DXP autosaves form data for other users to see | CVSS3: 7.5 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу