← Back

Sbond

sbond

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Watcharr
watcharr

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Sbond
1Watcharr
Nov 14, 2024
Nov 8, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using a crafted JWT token. This vulnerability is not limited to privilege escalation but also affects all...Show more
A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using a crafted JWT token. This vulnerability is not limited to privilege escalation but also affects all functions that require authentication.Show less
1Sbond
1Watcharr
Sep 29, 2025
Oct 11, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
An issue in sbondCo Watcharr v.1.43.0 allows a remote attacker to execute arbitrary code and escalate privileges via the Change Password function.