Weintek Weincloud Improper Handling of Structural Elements Vulnerability

2023-07-18

 

CVE ID CVE-2023-34429
Severity High
Affected Vendors Weintek
Affected Products Weincloud Account API: Versions 0.13.6 and prior
Vulnerability Details The affected product could allow an attacker to cause a denial-of-service condition for Weincloud by sending a forged JWT token.
Solutions & Rules · Fixed in version v0.13.8
Credit Hank Chen of TXOne Networks