Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-50314 | Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server. |
Fixes
Solution
Ormazabal recommends upgrading to updated models.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-03T14:55:08.187Z
Reserved: 2022-12-19T16:35:50.461Z
Link: CVE-2022-47554
Updated: 2024-08-03T14:55:08.187Z
Status : Modified
Published: 2023-09-19T13:16:19.653
Modified: 2024-11-21T07:32:10.940
Link: CVE-2022-47554
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD