First published: Tue Feb 20 2024(Updated: )
HtmlUtil.escapeRedirect in Liferay Portal 7.2.0 through 7.4.3.12, and older unsupported versions, and Liferay DXP 7.4 before update 9, 7.3 service pack 3, 7.2 fix pack 15 through 18, and older unsupported versions can be circumvented by using two forward slashes, which allows remote attackers to redirect users to arbitrary external URLs via the (1) 'redirect` parameter (2) `FORWARD_URL` parameter, and (3) others parameters that rely on HtmlUtil.escapeRedirect. This vulnerability is the result of an incomplete fix in CVE-2022-28977.
Credit: security@liferay.com
Affected Software | Affected Version | How to fix |
---|---|---|
Liferay DXP | <7.2 | |
Liferay DXP | =7.2 | |
Liferay DXP | =7.2-fix_pack_1 | |
Liferay DXP | =7.2-fix_pack_10 | |
Liferay DXP | =7.2-fix_pack_11 | |
Liferay DXP | =7.2-fix_pack_12 | |
Liferay DXP | =7.2-fix_pack_13 | |
Liferay DXP | =7.2-fix_pack_14 | |
Liferay DXP | =7.2-fix_pack_15 | |
Liferay DXP | =7.2-fix_pack_16 | |
Liferay DXP | =7.2-fix_pack_17 | |
Liferay DXP | =7.2-fix_pack_18 | |
Liferay DXP | =7.2-fix_pack_2 | |
Liferay DXP | =7.2-fix_pack_3 | |
Liferay DXP | =7.2-fix_pack_4 | |
Liferay DXP | =7.2-fix_pack_5 | |
Liferay DXP | =7.2-fix_pack_6 | |
Liferay DXP | =7.2-fix_pack_7 | |
Liferay DXP | =7.2-fix_pack_8 | |
Liferay DXP | =7.2-fix_pack_9 | |
Liferay DXP | =7.2-service_pack_1 | |
Liferay DXP | =7.2-service_pack_2 | |
Liferay DXP | =7.2-service_pack_3 | |
Liferay DXP | =7.2-service_pack_4 | |
Liferay DXP | =7.2-service_pack_5 | |
Liferay DXP | =7.2-service_pack_6 | |
Liferay DXP | =7.3-service_pack_3 | |
Liferay DXP | =7.4 | |
Liferay DXP | =7.4-update1 | |
Liferay DXP | =7.4-update2 | |
Liferay DXP | =7.4-update3 | |
Liferay DXP | =7.4-update4 | |
Liferay DXP | =7.4-update5 | |
Liferay DXP | =7.4-update6 | |
Liferay DXP | =7.4-update7 | |
Liferay DXP | =7.4-update8 | |
Liferay 7.4 GA | <7.4.3.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25609 is considered a high severity vulnerability due to its potential to allow remote attackers to exploit the system.
CVE-2024-25609 affects Liferay Portal versions 7.2.0 through 7.4.3.12 and older unsupported versions as well as Liferay DXP 7.4 before update 9, 7.3 service pack 3, and specific fix packs.
To fix CVE-2024-25609, users should upgrade to the latest patched versions of Liferay Portal or Liferay DXP that address this vulnerability.
CVE-2024-25609 is a security vulnerability related to improper validation in the HtmlUtil.escapeRedirect function.
Yes, CVE-2024-25609 can be exploited remotely by attackers using specific tactics to bypass security measures.