CVE-2023-36646
12.12.2023, 00:15
Incorrect user role checking in multiple REST API endpoints in ProLion CryptoSpike 3.0.15P2 allows a remote attacker with low privileges to execute privileged functions and achieve privilege escalation via REST API endpoint invocation.Enginsight
Vendor | Product | Version |
---|---|---|
prolion | cryptospike | 3.0.15:p2 |
𝑥
= Vulnerable software versions