Incorrect access control in the User Registration page of Crypto Currency Tracker (CCT) before v9.5 allows unauthenticated attackers to register as an Admin account via a crafted POST request.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Crypto_currency_tracker | Trendylogics | * | 9.5 (including) |