NA

CVE-2022-48341

Published: 23/02/2023 Updated: 03/03/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

ThingsBoard 3.4.1 could allow a remote authenticated malicious user to achieve Vertical Privilege Escalation. A Tenant Administrator can obtain System Administrator dashboard access by modifying the scope via the scopes parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

thingsboard thingsboard 3.4.1