Incorrect user role checking in multiple REST API endpoints in ProLion CryptoSpike 3.0.15P2 allows a remote attacker with low privileges to execute privileged functions and achieve privilege escalation via REST API endpoint invocation.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
prolion cryptospike 3.0.15 |