CVE-2022-47560
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Sep 20, 2023
Updated: Aug 3, 2024
CWE ID 319
Summary
CVE-2022-47560 is a vulnerability affecting ekorCCP and ekorRCI devices. This issue stems from insufficient web request controls, enabling attackers to craft custom requests. Successful exploitation of this vulnerability could result in malicious actions being executed while a user is logged in. This lack of control poses a significant risk to device security and should be addressed promptly. Users are urged to update their devices to the latest software version to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Ormazabal