Vulnerability CVE-2023-27172


Published: 2023-12-20

Description:
Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens. This allows attackers to easily obtain the secret key used to sign JWT tokens via a bruteforce attack.

 References:
https://balwurk.github.io/CVE-2023-27172/

Copyright 2026, cxsecurity.com

 

Back to Top