Intelligence View
CVE-2024-26265 | Liferay Portal/DXP Image Uploader Module resource consumption
A vulnerability, which was classified as problematic, has been found in Liferay Portal and DXP. Affected by this issue is some unknown functionality of the component Image Uploader Module. The manipulation leads to resource…
This vulnerability is handled as CVE-2024-26265. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
SOC Incident Playbook: Remote Code Execution (RCE) Defense
title: Detect Exploitation - CVE-2024-26265 | Liferay Portal/DXP Image Uploader Module resource consumption
id: 29fb458c-6b3f-43b0-9fac-58641b39c094
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-23
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-23"
description = "YARA Signature for "
strings:
$str = "CVE-2024-26265 | Liferay Porta" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR