CVE-2023-32188
16.10.2024, 09:15
A user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuVector. This can lead to an RCE.Enginsight
Vendor | Product | Version |
---|---|---|
neuvector | neuvector | 𝑥 < 0.0.0-20231003121714-be746957ee7c |
𝑥
= Vulnerable software versions