CVE-2023-36100 | Thecosy IceCMS 2.0.1 api/User/ChangeUser UserID privilege escalation (Issue 15 / EUVD-2023-40080)
A vulnerability has been found in Thecosy IceCMS 2.0.1 and classified as problematic. This issue affects some unknown processing of the file api/User/ChangeUser. Performing a manipulation of the argument UserID results in privilege escalation.
This vulnerability is known as CVE-2023-36100. Access to the local network is required for this attack. No exploit is available.