Critical severity9.8NVD Advisory· Published Sep 1, 2023· Updated Jun 17, 2026
CVE-2023-36100
CVE-2023-36100
Description
An issue was discovered in IceCMS version 2.0.1, allows attackers to escalate privileges and gain sensitive information via UserID parameter in api/User/ChangeUser.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- IceCMS/IceCMSdescription
Patches
Vulnerability mechanics
References
1- github.com/Thecosy/IceCMS/issues/15nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.