CVE-2024-33625

9.8CRITICAL

CyberPower PowerPanel business application code contains a hard-coded JWT signing key. This could result in an attacker forging JWT tokens to bypass authentication.

发布于: 5/15/2024更新于: 8/4/2025

描述

CyberPower PowerPanel business application code contains a hard-coded JWT signing key. This could result in an attacker forging JWT tokens to bypass authentication.

AI分析AI驱动

受影响产品

cyberpowerpowerpanel

参考资料