Security Advisory

CVE-2023-47322

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-12-13 00:00:00
Last updated 2026-07-09 00:28:52
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The "userModify" feature of Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) leading to privilege escalation. If an administrator goes to a malicious URL while being authenticated to the Silverpeas application, the CSRF with execute making the attacker an administrator user in the application.