icon

We found results for “

CVE-2023-32188

Good to know:

icon

Date: October 16, 2024

In neuvector prior to 5.2.2, a user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuVector. This can lead to an RCE.

Language: Go

Severity Score

Severity Score

Weakness Type (CWE)

Generation of Incorrect Security Tokens

CWE-1270

Top Fix

icon

Upgrade Version

Upgrade to version v5.2.2

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): LOW
Privileges Required (PR): NONE
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): HIGH
Integrity (I): HIGH
Availability (A): HIGH

Do you need more information?

Contact Us