CVE-2021-42534
—CVSS 3.1
6.1 medium
EPSS
<1%p47
Published
()
Modified
Description
The affected product’s web application does not properly neutralize the input during webpage generation, which could allow an attacker to inject code in the input forms.
- Vendors
- trane
- Products
- tracer sc firmware
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.