Liferay Portal Incorrect Default Permissions Vulnerability - CVE-2022-41414 - Vulnerability Database

Liferay Portal Incorrect Default Permissions Vulnerability - CVE-2022-41414

Medium
Reference: CVE-2022-41414
Title: Liferay Portal Incorrect Default Permissions Vulnerability
Overview:

An insecure default in the component auth.login.prompt.enabled of Liferay Portal v7.0.0 through v7.4.2 allows attackers to enumerate usernames site names and pages.