ZeroHour

CVE-2021-42534

CVSS 3.1
6.1 medium
EPSS
<1%p47
Published
()
Modified
Description

The affected product’s web application does not properly neutralize the input during webpage generation, which could allow an attacker to inject code in the input forms.

Vendors
trane
Products
tracer sc firmware
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.