Description
The redirect module in Liferay Portal before 7.3.3 does not limit the number of URLs resulting in a 404 error that is recorded, which allows remote attackers to perform a denial of service attack by making repeated requests for pages that do not exist.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2014-4310 Vulnerability (CVE-2014-4310)
WordPress Plugin Easy2Map Cross-Site Scripting (1.5.5)
WordPress Plugin Crelly Slider Multiple Unspecified Vulnerabilities (1.1.1)
ownCloud Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-1963)
Internet Information Services Other Vulnerability (CVE-2001-0545)