Логотип exploitDog
bind:CVE-2024-25144
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-25144

Количество 2

Количество 2

nvd логотип

CVE-2024-25144

около 2 лет назад

The IFrame widget in Liferay Portal 7.2.0 through 7.4.3.26, and older unsupported versions, and Liferay DXP 7.4 before update 27, 7.3 before update 6, 7.2 before fix pack 19, and older unsupported versions does not check the URL of the IFrame, which allows remote authenticated users to cause a denial-of-service (DoS) via a self referencing IFrame.

CVSS3: 4.1
EPSS: Низкий
github логотип

GHSA-w275-m8cr-hf2v

около 2 лет назад

Liferay Portal denial-of-service vulnerability

CVSS3: 4.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-25144

The IFrame widget in Liferay Portal 7.2.0 through 7.4.3.26, and older unsupported versions, and Liferay DXP 7.4 before update 27, 7.3 before update 6, 7.2 before fix pack 19, and older unsupported versions does not check the URL of the IFrame, which allows remote authenticated users to cause a denial-of-service (DoS) via a self referencing IFrame.

CVSS3: 4.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-w275-m8cr-hf2v

Liferay Portal denial-of-service vulnerability

CVSS3: 4.1
0%
Низкий
около 2 лет назад

Уязвимостей на страницу