CVE-2023-6760
Thecosy Icecms 2.0.1
Public PoC
Published
13 December 2023
Modified
21 November 2024
CVSS Score v3.1
6.3
Click a component to see what it means
Raw vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
EPSS Score
0.0064
47th percentile
Summary
CVE-2023-6760 is a medium-severity an unspecified weakness vulnerability in Thecosy Icecms. Its CVSS base score is 6.3 (Medium).
Operationally, ranked at the 47th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog; a public proof-of-concept is referenced.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2023-58972
Vulnerability Data
A vulnerability classified as critical was found in Thecosy IceCMS up to 2.0.1. This vulnerability affects unknown code. The manipulation leads to manage user sessions. The attack can be initiated remotely. The exploit has been disclosed to the public and…
more
may be used. The identifier of this vulnerability is VDB-247888.
- CWE(s)
Related Threats
CVEs Like This One
CVE-2024-46610Same product: Thecosy Icecms
CVE-2023-6762Same product: Thecosy Icecms
CVE-2023-33355Same product: Thecosy Icecms
CVE-2025-22983Same product: Thecosy Icecms
CVE-2023-6756Same product: Thecosy Icecms
CVE-2023-6757Same product: Thecosy Icecms
CVE-2024-46609Same product: Thecosy Icecms
CVE-2023-6759Same product: Thecosy Icecms
CVE-2024-48202Same product: Thecosy Icecms
CVE-2023-6761Same product: Thecosy Icecms
Affected Assets
thecosy
icecms
2.0.1
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.