CVE-2023-40182
CVE-2023-40182 is a low-severity vulnerability in Silverwaregames with a CVSS 3.x base score of 3.7. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-208.
Key facts
- Severity: Low (CVSS 3.x base score 3.7)
- EPSS exploit prediction: 0% (26th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-208
- Affected product: Silverwaregames
- Published:
- Last modified:
Description
Silverware Games is a premium social network where people can play games online. When using the Recovery form, a noticeably different amount of time passes depending of whether the specified email address presents in our database or not. This has been fixed in version 1.3.7.
Frequently asked questions
- What is CVE-2023-40182?
- Silverware Games is a premium social network where people can play games online. When using the Recovery form, a noticeably different amount of time passes depending of whether the specified email address presents in our database or not. This has been fixed in version 1.3.7.
- How severe is CVE-2023-40182?
- CVE-2023-40182 has a CVSS 3.x base score of 3.7, rated low severity. It is exploitable over network with high attack complexity, requires no privileges and no user interaction. Impact on confidentiality is low, integrity none, and availability none.
- Is CVE-2023-40182 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (26th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2023-40182?
- CVE-2023-40182 affects Silverwaregames. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2023-40182?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2023-40182 published?
- CVE-2023-40182 was published on 2023-08-25 and last updated on 2026-06-17.
References
Affected products (1)
- cpe:2.3:a:silverwaregames:silverwaregames:*:*:*:*:*:*:*:*
More vulnerabilities in Silverwaregames
- CVE-2022-23543 — Medium (CVSS 6.3): Silverware Games is a social network where people can play games online. Users can attach URLs to YouTube videos, the…
- CVE-2022-36072 — Medium (CVSS 5.9): SilverwareGames.io is a social network for users to play video games online. In version 1.1.8 and prior, due to an…
- CVE-2023-40179 — Medium (CVSS 5.3): Silverware Games is a premium social network where people can play games online. Prior to version 1.3.6, the Password…
- CVE-2023-29192 — Low (CVSS 2.7): SilverwareGames.io versions before 1.2.19 allow users with access to the game upload panel to edit download links for…
All CVEs affecting Silverwaregames →
Other CWE-208 vulnerabilities
- CVE-2023-41313 — Critical (CVSS 9.8): The authentication method in Apache Doris versions before 2.0.0 was vulnerable to timing attacks. Users are recommended…
- CVE-2026-16315 — High (CVSS 8.7): OMICRON StationGuard before version 4.10 contains a cryptographic timing side-channel vulnerability in the backend…
- CVE-2024-42512 — High (CVSS 8.6): Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass…
- CVE-2026-43606 — High (CVSS 8.5): Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local…
- CVE-2025-53940 — High (CVSS 8.5): Quiet is an alternative to team chat apps like Slack, Discord, and Element that does not require trusting a central…
- CVE-2026-16731 — High (CVSS 8.3): OMICRON StationScout before version 3.05 contains a cryptographic timing side-channel vulnerability in the backend…