296,772
Total vulnerabilities in the database
The "userModify" feature of Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) leading to privilege escalation. If an administrator goes to a malicious URL while being authenticated to the Silverpeas application, the CSRF with execute making the attacker an administrator user in the application.
| Software | From | Fixed in |
|---|---|---|
org.silverpeas.core / silverpeas-core-web
|
- | 6.3.2 |
| silverpeas / silverpeas | - | 6.3.2 |