Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ThingsBoard 3.4.1 could allow a remote attacker to gain elevated privileges because hard-coded service credentials (usable for privilege escalation) are stored in an insecure format. (To read this stored data, the attacker needs access to the application server or its source code.)
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Thingsboard 信任管理问题漏洞
Vulnerability Description
Thingsboard是Thingsboard团队的一个基于Java用于IOT设备进行监控、管理、数据收集的平台。 ThingsBoard 3.4.1版本存在安全漏洞,该漏洞源于硬编码服务凭证以不安全的格式存储,攻击者利用该漏洞可以提升权限。
CVSS Information
N/A
Vulnerability Type
N/A