CVE-2023-47320

Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the administrator-only function of putting the application in "Maintenance Mode" due to broken access control. This makes the application unavailable to all users. This affects Silverpeas Core 6.3.1 and below.
Configurations

Configuration 1 (hide)

cpe:2.3:a:silverpeas:silverpeas:*:*:*:*:*:*:*:*

History

15 Dec 2023, 20:51

Type Values Removed Values Added
CPE cpe:2.3:a:silverpeas:silverpeas:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
CWE NVD-CWE-Other
References () https://github.com/RhinoSecurityLabs/CVEs/tree/master/CVE-2023-47320 - () https://github.com/RhinoSecurityLabs/CVEs/tree/master/CVE-2023-47320 - Exploit, Third Party Advisory
References () http://silverpeas.com - () http://silverpeas.com - Product
First Time Silverpeas silverpeas
Silverpeas

13 Dec 2023, 14:27

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-13 14:15

Updated : 2025-05-22 19:15


NVD link : CVE-2023-47320

Mitre link : CVE-2023-47320


JSON object : View

Products Affected

silverpeas

  • silverpeas