Description
Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server.
Published: 2023-09-19
Score: 8.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Ormazabal recommends upgrading to updated models.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-50314 Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server.
History

No history.

Subscriptions

Ormazabal Ekorccp Ekorccp Firmware Ekorrci Ekorrci Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-03T14:55:08.187Z

Reserved: 2022-12-19T16:35:50.461Z

Link: CVE-2022-47554

cve-icon Vulnrichment

Updated: 2024-08-03T14:55:08.187Z

cve-icon NVD

Status : Modified

Published: 2023-09-19T13:16:19.653

Modified: 2024-11-21T07:32:10.940

Link: CVE-2022-47554

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses