Логотип exploitDog
bind:CVE-2021-33325
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-33325

Количество 2

Количество 2

nvd логотип

CVE-2021-33325

больше 4 лет назад

The Portal Workflow module in Liferay Portal 7.3.2 and earlier, and Liferay DXP 7.0 before fix pack 93, 7.1 before fix pack 19, and 7.2 before fix pack 7, user's clear text passwords are stored in the database if workflow is enabled for user creation, which allows attackers with access to the database to obtain a user's password.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-6c88-gvxw-f5hg

больше 3 лет назад

Liferay Portal and Liferay DXP Stores User Passwords in Cleartext

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-33325

The Portal Workflow module in Liferay Portal 7.3.2 and earlier, and Liferay DXP 7.0 before fix pack 93, 7.1 before fix pack 19, and 7.2 before fix pack 7, user's clear text passwords are stored in the database if workflow is enabled for user creation, which allows attackers with access to the database to obtain a user's password.

CVSS3: 4.9
0%
Низкий
больше 4 лет назад
github логотип
GHSA-6c88-gvxw-f5hg

Liferay Portal and Liferay DXP Stores User Passwords in Cleartext

CVSS3: 4.9
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу