Critical severity9.1NVD Advisory· Published Dec 20, 2023· Updated Jun 17, 2026
CVE-2023-27172
CVE-2023-27172
Description
Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens. This allows attackers to easily obtain the secret key used to sign JWT tokens via a bruteforce attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Xpand IT/Write-back Managerdescription
- Range: = 2.3.1
Patches
Vulnerability mechanics
References
1- balwurk.github.io/CVE-2023-27172/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.