Total vulnerabilities in the database
An insecure default in the component auth.login.prompt.enabled of Liferay Portal v7.0.0 through v7.4.2 allows attackers to enumerate usernames, site names, and pages.
Software | From | Fixed in |
---|---|---|
liferay / liferay_portal | 7.0.0 | 7.4.2.x |