Known Vulnerabilities for products from Silverpeas
Listed below are 11 of the newest known vulnerabilities associated with the vendor "Silverpeas".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-53698 json | Not Provided | 2026-06-10 | 2026-06-10 | |
| CVE-2024-42850 json | An issue in the password change function of Silverpeas v6.4.2 and lower allows for the bypassing of password complexity requi... | Not Provided | 2024-08-16 | 2026-07-05 |
| CVE-2024-42849 json | An issue in Silverpeas v.6.4.2 and lower allows a remote attacker to cause a denial of service via the password change functi... | Not Provided | 2024-08-16 | 2026-07-05 |
| CVE-2023-47327 json | The "Create a Space" feature in Silverpeas Core 6.3.1 is reserved for use by administrators. This function suffers from broke... | Not Provided | 2023-12-13 | 2026-07-09 |
| CVE-2023-47326 json | Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) via the Domain SQL Create function. | Not Provided | 2023-12-13 | 2026-07-05 |
| CVE-2023-47325 json | Silverpeas Core 6.3.1 administrative "Bin" feature is affected by broken access control. A user with low privileges is able t... | Not Provided | 2023-12-13 | 2026-07-09 |
| CVE-2023-47324 json | Silverpeas Core 6.3.1 is vulnerable to Cross Site Scripting (XSS) via the message/notification feature. | Not Provided | 2023-12-13 | 2026-07-05 |
| CVE-2023-47323 json | The notification/messaging feature of Silverpeas Core 6.3.1 does not enforce access control on the ID parameter. This allows ... | Not Provided | 2023-12-13 | 2026-07-09 |
| CVE-2023-47322 json | The "userModify" feature of Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) leading to privilege esc... | Not Provided | 2023-12-13 | 2026-07-09 |
| CVE-2023-47321 json | Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control via the "Porlet Deployer" which allows administrators to depl... | Not Provided | 2023-12-13 | 2026-07-09 |
| CVE-2023-47320 json | Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the admin... | Not Provided | 2023-12-13 | 2026-07-09 |
| CVE-2018-19586 json | Silverpeas 5.15 through 6.0.2 is affected by an authenticated Directory Traversal vulnerability that can be triggered during ... | 9.9 - CRITICAL | 2019-04-09 | 2019-04-11 |
Known software with vulnerabilities from Silverpeas
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Silverpeas | Silverpeas | 5.10 |