CVE-2022-47553

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 19, 2023
Updated: Aug 3, 2024
CWE ID 285
CWE ID 863

Summary

CVE-2022-47553 is a cybersecurity vulnerability affecting ekorCCP and ekorRCI. This issue arises from an incorrect authorization mechanism, enabling unauthenticated remote attackers to access resources containing sensitive organizational information. The flaw does not require any form of authentication within the web server to exploit, posing a significant risk to affected systems. Successful exploitation could result in the attacker gaining unauthorized access to valuable data. Organizations using ekorCCP or ekorRCI are advised to apply the available patch or update to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share