📦 Write Back Manager

by Xpand It

🔍 What is Write Back Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-27168

CRITICAL CVSS 9.8 Jan 19, 2024

This vulnerability allows attackers to upload arbitrary JSP files to Xpand IT Write-back Manager v2.3.1, leading to remote code execution. Attackers can gain full control of affected systems by upload...

CVE-2023-27172

CRITICAL CVSS 9.1 Dec 20, 2023

Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens, allowing attackers to brute-force the key and forge valid tokens. This affects all deployments using the vulnerable version...

CVE-2023-27170

HIGH CVSS 7.5 Oct 26, 2023

CVE-2023-27170 is a directory traversal vulnerability in Xpand IT Write-back manager v2.3.1 that allows attackers to access files outside the intended directory by manipulating the siteName parameter....