CVE-2023-36100

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/09/2023
Last modified:
01/10/2024

Description

An issue was discovered in IceCMS version 2.0.1, allows attackers to escalate privileges and gain sensitive information via UserID parameter in api/User/ChangeUser.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:macwk:icecms:2.0.1:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools