Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25623 | Liferay Portal users can upload an unlimited amount of files |
Github GHSA |
GHSA-84pp-qr92-95c9 | Liferay Portal users can upload an unlimited amount of files |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sat, 23 Aug 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Liferay
Liferay dxp Liferay portal |
|
| Vendors & Products |
Liferay
Liferay dxp Liferay portal |
Fri, 22 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Aug 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.1, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.14 and 7.4 GA through update 92 allow users to upload an unlimited amount of files through the forms, the files are stored in the document_library allowing an attacker to cause a potential DDoS. | |
| Weaknesses | CWE-770 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Liferay
Published:
Updated: 2025-08-22T19:03:57.385Z
Reserved: 2025-04-17T10:55:26.803Z
Link: CVE-2025-43762
Updated: 2025-08-22T19:03:47.834Z
Status : Awaiting Analysis
Published: 2025-08-22T19:15:38.800
Modified: 2025-08-25T20:24:45.327
Link: CVE-2025-43762
No data.
OpenCVE Enrichment
Updated: 2025-08-23T10:54:58Z
EUVD
Github GHSA