The login REST API in ProLion... CVE-2023-36655

- AV AC AU C I A
发布: 2023-12-06
修订: 2023-12-12

The login REST API in ProLion CryptoSpike 3.0.15P2 (when LDAP or Active Directory is used as the users store) allows a remote blocked user to login and obtain an authentication token by specifying a username with different uppercase/lowercase character combination.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息