Количество 2
Количество 2
CVE-2023-47323
около 2 лет назад
The notification/messaging feature of Silverpeas Core 6.3.1 does not enforce access control on the ID parameter. This allows an attacker to read all messages sent between other users; including those sent only to administrators.
CVSS3: 7.5
EPSS: Низкий
GHSA-cwh6-hm53-6w2m
около 2 лет назад
Missing access control in Silverpeas
CVSS3: 7.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-47323 The notification/messaging feature of Silverpeas Core 6.3.1 does not enforce access control on the ID parameter. This allows an attacker to read all messages sent between other users; including those sent only to administrators. | CVSS3: 7.5 | 1% Низкий | около 2 лет назад | |
GHSA-cwh6-hm53-6w2m Missing access control in Silverpeas | CVSS3: 7.5 | 1% Низкий | около 2 лет назад |
Уязвимостей на страницу
20