CVE-2023-35134 - Password Reset in Weintek Weincloud v.13.6 with Only a JWT Token
In this post, we’ll break down a real-world vulnerability: CVE-2023-35134. Found in Weintek Weincloud v.13.6, this flaw lets an
CVE-2023-34429 - How a Forged JWT Token Can Crash Weintek Weincloud v.13.6
Weintek Weincloud is a popular cloud service for connecting and monitoring Human-Machine Interfaces (HMI) in industrial setups. In May 2023, a significant vulnerability, CVE-
CVE-2023-37899 - How a Malicious Socket.io Message Could Crash Your FeathersJS App
FeathersJS is a popular framework that helps developers quickly build web APIs and real-time applications using TypeScript or JavaScript. It leverages robust libraries like
CVE-2023-37733 - How A File Upload Bug In tduck-platform v4. Lets Attackers Run Code on Your Server
Security vulnerabilities come in many shapes and sizes, but few are as dangerous as unrestricted file uploads. In 2023, researchers discovered a nasty bug in
CVE-2023-30799 - How MikroTik's Privilege Escalation Bug Lets Attackers Take Over Routers
MikroTik routers are found everywhere — in small business networks, homes, and even some larger companies’ infrastructure. But a serious security hole, called CVE-2023-30799,
Episode
00:00:00
00:00:00