Логотип exploitDog
bind:CVE-2025-62250
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-62250

Количество 2

Количество 2

nvd логотип

CVE-2025-62250

4 месяца назад

Improper Authentication in Liferay Portal 7.4.0 through 7.4.3.132, and older unsupported versions, and Liferay DXP 2023.Q4.0, 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA through update 35, and older unsupported versions allows remote attackers to send malicious data to the Liferay Portal 7.4.0 through 7.4.3.132, and older unsupported versions, and Liferay DXP 2023.Q4.0, 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA through update 35, and older unsupported versions that will treat it as trusted data via unauthenticated cluster messages.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-6pgj-w687-9c8c

4 месяца назад

Liferay Portal fails to verify messages from the cluster network is trusted

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-62250

Improper Authentication in Liferay Portal 7.4.0 through 7.4.3.132, and older unsupported versions, and Liferay DXP 2023.Q4.0, 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA through update 35, and older unsupported versions allows remote attackers to send malicious data to the Liferay Portal 7.4.0 through 7.4.3.132, and older unsupported versions, and Liferay DXP 2023.Q4.0, 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA through update 35, and older unsupported versions that will treat it as trusted data via unauthenticated cluster messages.

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-6pgj-w687-9c8c

Liferay Portal fails to verify messages from the cluster network is trusted

0%
Низкий
4 месяца назад

Уязвимостей на страницу