CVE-2021-42751
12.08.2022, 17:15
A cross-site scripting (XSS) vulnerability in Rule Engine in ThingsBoard 3.3.1 allows remote attackers (with administrative access) to inject arbitrary JavaScript within the description of a rule node.
Vendor | Product | Version |
---|---|---|
thingsboard | thingsboard | 3.3.1 |
𝑥
= Vulnerable software versions