CVE-2025-46047 | Silverpeas 6.4.1/6.4.2 Endpoint ForgotPassword Login information disclosure
A vulnerability identified as problematic has been detected in Silverpeas 6.4.1/6.4.2. Affected by this issue is some unknown functionality of the file /CredentialsServlet/ForgotPassword of the component Endpoint. Performing manipulation of the argument Login results in information disclosure.
This vulnerability is identified as CVE-2025-46047. The attack can be initiated remotely. There is not any exploit available.
It is recommended to apply a patch to fix this issue.