Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-47558

Опубликовано: 19 сент. 2023
Источник: nvd
CVSS3: 9.4
CVSS3: 9.8
EPSS Низкий

Описание

Devices ekorCCP and ekorRCI are vulnerable due to access to the FTP service using default credentials. Exploitation of this vulnerability can allow an attacker to modify critical files that could allow the creation of new users, delete or modify existing users, modify configuration files, install rootkits or backdoors.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:ormazabal:ekorrci_firmware:601j:*:*:*:*:*:*:*
cpe:2.3:h:ormazabal:ekorrci:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:o:ormazabal:ekorccp_firmware:601j:*:*:*:*:*:*:*
cpe:2.3:h:ormazabal:ekorccp:-:*:*:*:*:*:*:*

EPSS

Процентиль: 32%
0.00122
Низкий

9.4 Critical

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-284
CWE-798

Связанные уязвимости

CVSS3: 9.4
github
больше 2 лет назад

** UNSUPPPORTED WHEN ASSIGNED ** Devices ekorCCP and ekorRCI are vulnerable due to access to the FTP service using default credentials. Exploitation of this vulnerability can allow an attacker to modify critical files that could allow the creation of new users, delete or modify existing users, modify configuration files, install rootkits or backdoors.

EPSS

Процентиль: 32%
0.00122
Низкий

9.4 Critical

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-284
CWE-798