ZeroHour

CVE-2023-47325

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p35
Published
()
Modified
Description

Silverpeas Core 6.3.1 administrative "Bin" feature is affected by broken access control. A user with low privileges is able to navigate directly to the bin, revealing all deleted spaces. The user can then restore or permanently delete the spaces.

Vendors
silverpeas
Products
silverpeas
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.