Security Advisory

CVE-2023-36652

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-12 00:00:00
Last updated 2025-05-27 14:40:05
Assigner mitre
State PUBLISHED

Description

A SQL Injection in the users searching REST API endpoint in ProLion CryptoSpike 3.0.15P2 allows remote authenticated attackers to read database data via SQL commands injected in the search parameter.