Devices ekorCCP and ekorRCI are vulnerable due to access to the FTP service using default credentials. Exploitation of this vulnerability can allow an attacker to modify critical files that could allow the creation of new users, delete or modify existing users, modify configuration files, install rootkits or backdoors.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-50318 Devices ekorCCP and ekorRCI are vulnerable due to access to the FTP service using default credentials. Exploitation of this vulnerability can allow an attacker to modify critical files that could allow the creation of new users, delete or modify existing users, modify configuration files, install rootkits or backdoors.
Fixes

Solution

Ormazabal recommends upgrading to updated models.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-03T14:55:08.506Z

Reserved: 2022-12-19T16:35:50.462Z

Link: CVE-2022-47558

cve-icon Vulnrichment

Updated: 2024-08-03T14:55:08.506Z

cve-icon NVD

Status : Modified

Published: 2023-09-19T13:16:21.193

Modified: 2024-11-21T07:32:11.513

Link: CVE-2022-47558

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.