Vulnerabilities > Kaaproject

DATE CVE VULNERABILITY TITLE RISK
2020-11-17 CVE-2020-26701 Cross-site Scripting vulnerability in Kaaproject KAA 1.2.0
Cross-site scripting (XSS) vulnerability in Dashboards section in Kaa IoT Platform v1.2.0 allows remote attackers to inject malicious web scripts or HTML Injection payloads via the Description parameter.
network
low complexity
kaaproject CWE-79
5.4