CVE-2023-47320

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/12/2023
Last modified:
22/05/2025

Description

Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the administrator-only function of putting the application in "Maintenance Mode" due to broken access control. This makes the application unavailable to all users. This affects Silverpeas Core 6.3.1 and below.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:silverpeas:silverpeas:*:*:*:*:*:*:*:* 6.3.2 (excluding)