cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-32188,https://securityvulnerability.io/vulnerability/CVE-2023-32188,NeuVector Token Reverse Engineering Leads to Remote Code Execution,"A vulnerability in NeuVector's authentication process allows an attacker to reverse engineer the JSON Web Token (JWT) used for Manager and API access. By forging a valid NeuVector Token, the attacker can potentially gain unauthorized access to the system, enabling malicious activities, including remote code execution. Organizations using NeuVector products should remain vigilant and apply necessary security patches to mitigate the risk.",Suse,Neuvector,,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-10-16T08:25:59.699Z,0 CVE-2023-22644,https://securityvulnerability.io/vulnerability/CVE-2023-22644,JWT token compromise can allow malicious actions including Remote Code Execution (RCE),"A user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuVector. This can lead to an RCE.",Suse,Neuvector,5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-09-20T09:15:00.000Z,0