Vulnerability Description
Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the administrator-only function of putting the application in "Maintenance Mode" due to broken access control. This makes the application unavailable to all users. This affects Silverpeas Core 6.3.1 and below.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Silverpeas | Silverpeas | < 6.3.2 |
Related Weaknesses (CWE)
References
- http://silverpeas.comProduct
- https://github.com/RhinoSecurityLabs/CVEs/tree/master/CVE-2023-47320ExploitThird Party Advisory
- http://silverpeas.comProduct
- https://github.com/RhinoSecurityLabs/CVEs/tree/master/CVE-2023-47320ExploitThird Party Advisory
FAQ
What is CVE-2023-47320?
CVE-2023-47320 is a vulnerability with a CVSS score of 8.1 (HIGH). Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the administrator-only function of putting the application in "Maintenance Mode" due...
How severe is CVE-2023-47320?
CVE-2023-47320 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-47320?
Check the references section above for vendor advisories and patch information. Affected products include: Silverpeas Silverpeas.