// For flags

CVE-2022-28977

 

Severity Score

6.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

HtmlUtil.escapeRedirect in Liferay Portal 7.3.1 through 7.4.2, and Liferay DXP 7.0 fix pack 91 through 101, 7.1 fix pack 17 through 25, 7.2 fix pack 5 through 14, and 7.3 before service pack 3 can be circumvented by using multiple forward slashes, which allows remote attackers to redirect users to arbitrary external URLs via the (1) 'redirect` parameter (2) `FORWARD_URL` parameter, and (3) others parameters that rely on HtmlUtil.escapeRedirect.

El archivo HtmlUtil.escapeRedirect en Liferay Portal versiones 7.3.1 hasta 7.4.2, y Liferay DXP versiones 7.0 fix pack 91 hasta 101, 7.1 fix pack 17 hasta 25, 7.2 fix pack 5 hasta 14, y 7. 3 anteriores a service pack 3, puede ser omitido mediante el uso de múltiples barras diagonales, lo que permite a atacantes remotos redirigir a usuarios a URLs externas arbitrarias por medio del parámetro (1) "redirect" (2) "FORWARD_URL" y (3) otros parámetros que dependen de HtmlUtil.escapeRedirect

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2022-04-11 CVE Reserved
  • 2022-09-22 CVE Published
  • 2024-04-14 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
-
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_100
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_101
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_91
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_92
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_93
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_94
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_95
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_96
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_97
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_98
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.0
Search vendor "Liferay" for product "Dxp" and version "7.0"
fix_pack_99
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
-
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_17
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_18
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_19
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_20
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_21
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_22
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_23
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_24
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.1
Search vendor "Liferay" for product "Dxp" and version "7.1"
fix_pack_25
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
-
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_10
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_11
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_12
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_13
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_14
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_5
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_6
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_7
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_8
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.2
Search vendor "Liferay" for product "Dxp" and version "7.2"
fix_pack_9
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.3
Search vendor "Liferay" for product "Dxp" and version "7.3"
-
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.3
Search vendor "Liferay" for product "Dxp" and version "7.3"
sp1
Affected
Liferay
Search vendor "Liferay"
Dxp
Search vendor "Liferay" for product "Dxp"
7.3
Search vendor "Liferay" for product "Dxp" and version "7.3"
sp2
Affected
Liferay
Search vendor "Liferay"
Liferay Portal
Search vendor "Liferay" for product "Liferay Portal"
>= 7.3.1 < 7.4.3.4
Search vendor "Liferay" for product "Liferay Portal" and version " >= 7.3.1 < 7.4.3.4"
-
Affected