Description
Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Ormazabal recommends upgrading to updated models.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-50314 | Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information from various .xml files, including .xml files containing credentials, without being authenticated within the web server. |
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-03T14:55:08.187Z
Reserved: 2022-12-19T16:35:50.461Z
Link: CVE-2022-47554
Updated: 2024-08-03T14:55:08.187Z
Status : Modified
Published: 2023-09-19T13:16:19.653
Modified: 2024-11-21T07:32:10.940
Link: CVE-2022-47554
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD