Vulnerabilities > Generation of Incorrect Security Identifiers

DATE CVE VULNERABILITY TITLE RISK
2023-09-20 CVE-2023-22644 Generation of Incorrect Security Identifiers vulnerability in Suse Manager Server
A user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuVector.
local
low complexity
suse CWE-1270
5.5
2023-05-25 CVE-2023-2882 Generation of Incorrect Security Identifiers vulnerability in Cbot Core and Cbot Panel
Generation of Incorrect Security Tokens vulnerability in CBOT Chatbot allows Token Impersonation, Privilege Abuse.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
network
low complexity
cbot CWE-1270
critical
9.8