NA

CVE-2023-26462

Published: 23/02/2023 Updated: 29/08/2023
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

ThingsBoard 3.4.1 could allow a remote malicious user to gain elevated privileges because hard-coded service credentials (usable for privilege escalation) are stored in an insecure format. (To read this stored data, the attacker needs access to the application server or its source code.)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

thingsboard thingsboard 3.4.1