Описание
Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the administrator-only function of putting the application in "Maintenance Mode" due to broken access control. This makes the application unavailable to all users. This affects Silverpeas Core 6.3.1 and below.
Ссылки
- Product
- ExploitThird Party Advisory
- Product
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 6.3.2 (исключая)
cpe:2.3:a:silverpeas:silverpeas:*:*:*:*:*:*:*:*
EPSS
Процентиль: 57%
0.00351
Низкий
8.1 High
CVSS3
Дефекты
NVD-CWE-Other
CWE-863
Связанные уязвимости
EPSS
Процентиль: 57%
0.00351
Низкий
8.1 High
CVSS3
Дефекты
NVD-CWE-Other
CWE-863