Description
Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control via the "Porlet Deployer" which allows administrators to deploy .WAR portlets.
Remediation
References
http://silverpeas.com
https://github.com/RhinoSecurityLabs/CVEs/tree/master/CVE-2023-47321
Related Vulnerabilities
CVE-2020-7691 Vulnerability in maven package org.webjars.bower:jspdf
CVE-2021-32731 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web
CVE-2022-25929 Vulnerability in npm package smoothie
CVE-2022-1295 Vulnerability in maven package org.webjars.bower:fullpage
CVE-2022-23458 Vulnerability in maven package org.webjars.bowergithub.nhn:tui.grid