CVE-2023-47326: CSRF
Published Dec 13, 2023
·Updated
Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) via the Domain SQL Create function.
Affected Software
2 affected componentsFixes available
maven/org.silverpeas.core:silverpeas-core<6.3.2
6.3.2
Silverpeas Silverpeas<6.3.2
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
maven/org.silverpeas.core:silverpeas-coreto a version that resolves this vulnerability.Fixed in 6.3.2
Event History
Dec 13, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Advisory Published
03:30 PM
Frequently Asked Questions
1
What is the severity of CVE-2023-47326?
CVE-2023-47326 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2023-47326?
To remediate CVE-2023-47326, upgrade to Silverpeas Core version 6.3.2 or later.
3
What type of vulnerability is CVE-2023-47326?
CVE-2023-47326 is identified as a Cross Site Request Forgery (CSRF) vulnerability.
4
Which software versions are affected by CVE-2023-47326?
CVE-2023-47326 affects Silverpeas Core versions prior to 6.3.2.
5
What potential impact does CVE-2023-47326 have on users?
CVE-2023-47326 could allow attackers to perform unauthorized actions on behalf of users without their consent.