AI Score
Confidence
High
EPSS
Percentile
44.2%
Incorrect user role checking in multiple REST API endpoints in ProLion CryptoSpike 3.0.15P2 allows a remote attacker with low privileges to execute privileged functions and achieve privilege escalation via REST API endpoint invocation.
www.cvcn.gov.it/cvcn/cve/CVE-2023-36646