Weintek Weincloud Improper Authentication Vulnerability

2023-07-18

 

CVE ID CVE-2023-37362
Severity High
Affected Vendors Weintek
Affected Products Weincloud Account API: Versions 0.13.6 and prior
Vulnerability Details The affected product could allow an attacker to abuse the registration functionality to login with testing credentials to the official website.
Solutions & Rules · Fixed in version v0.13.8
Credit Hank Chen of TXOne Networks