Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-50314 Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server.
Fixes

Solution

Ormazabal recommends upgrading to updated models.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-03T14:55:08.187Z

Reserved: 2022-12-19T16:35:50.461Z

Link: CVE-2022-47554

cve-icon Vulnrichment

Updated: 2024-08-03T14:55:08.187Z

cve-icon NVD

Status : Modified

Published: 2023-09-19T13:16:19.653

Modified: 2024-11-21T07:32:10.940

Link: CVE-2022-47554

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.