Liferay Portal Deserialization of Untrusted Data Vulnerability - CVE-2019-16891 - Vulnerability Database

Liferay Portal Deserialization of Untrusted Data Vulnerability - CVE-2019-16891

High
Reference: CVE-2019-16891
Title: Liferay Portal Deserialization of Untrusted Data Vulnerability
Overview:

Liferay Portal CE 6.2.5 allows remote command execution because of deserialization of a JSON payload.