Количество 2
Количество 2
CVE-2022-42129
An Insecure direct object reference (IDOR) vulnerability in the Dynamic Data Mapping module in Liferay Portal 7.3.2 through 7.4.3.4, and Liferay DXP 7.3 before update 4, and 7.4 GA allows remote authenticated users to view and access form entries via the `formInstanceRecordId` parameter.
GHSA-g6x4-57hp-j4xm
Authorization Bypass in Liferay Portal
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-42129 An Insecure direct object reference (IDOR) vulnerability in the Dynamic Data Mapping module in Liferay Portal 7.3.2 through 7.4.3.4, and Liferay DXP 7.3 before update 4, and 7.4 GA allows remote authenticated users to view and access form entries via the `formInstanceRecordId` parameter. | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
GHSA-g6x4-57hp-j4xm Authorization Bypass in Liferay Portal | CVSS3: 4.3 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу