CVE-2023-27172
20.12.2023, 01:15
Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens. This allows attackers to easily obtain the secret key used to sign JWT tokens via a bruteforce attack.Enginsight
Vendor | Product | Version |
---|---|---|
xpand-it | write-back_manager | 2.3.1 |
𝑥
= Vulnerable software versions