Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35168
HistoryApr 20, 2022 - 11:43 a.m.

Privilege Escalation

2022-04-2011:43:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

0.001 Low

EPSS

Percentile

35.3%

com.liferay.portal is vulnerable to privilege escalation. Remote authenticated attackers are able to gain access to view sensitive user information by accessing a list of sites and groups via the site membership assignment UI, due to improper validations of user permissions.

0.001 Low

EPSS

Percentile

35.3%

Related for VERACODE:35168