CVE-2022-41414
07.10.2022, 18:15
An insecure default in the component auth.login.prompt.enabled of Liferay Portal v7.0.0 through v7.4.2 allows attackers to enumerate usernames, site names, and pages.Enginsight
Vendor | Product | Version |
---|---|---|
liferay | liferay_portal | 7.0.0 ≤ 𝑥 ≤ 7.4.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration