CVE-2023-6784

A malicious user could potentially use the Sitefinity system for the distribution of phishing emails.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.7 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
ProgressSoftwareCNA
4.7 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
VendorProductVersion
progresssitefinity
4.0 ≤
𝑥
< 13.3.7648
progresssitefinity
14.1 ≤
𝑥
< 14.1.7828
progresssitefinity
14.2 ≤
𝑥
< 14.2.7932
progresssitefinity
14.3 ≤
𝑥
< 14.3.8029
progresssitefinity
14.4 ≤
𝑥
< 14.4.8133
progresssitefinity
15.0 ≤
𝑥
< 15.0.8223
𝑥
= Vulnerable software versions