QID 730485
Date Published: 2022-05-12
QID 730485: Liferay Portal Denial of Service (DoS) vulnerability Vulnerability
DoS vulnerability prevents LDAP users from authenticating Liferay Portal 7.2.1 and earlier
Affected Versions:
Liferay Portal 7.2.1 and earlier
QID Detection Logic (Unauthenticated): This QID checks for vulnerable version of Liferay Portal in response banner.
Successful exploit allows attacker to prevents LDAP users from authenticating hence creating DOS
Solution
Vendor has released patch. For more info please refer to Liferay Portal Security Advisory
Vendor References
CVEs related to QID 730485
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Liferay Portal |
|