CVE-2020-7961
EUVD-2022-552720.03.2020, 19:15
Deserialization of Untrusted Data in Liferay Portal prior to 7.2.1 CE GA2 allows remote attackers to execute arbitrary code via JSON web services (JSONWS).Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| liferay | liferay_portal | 𝑥 < 7.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References