Home/Product/ormazabal ekorccp firmware
Product

ormazabal ekorccp firmware

10 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-47562
all versions
Vulnerability in the RCPbind service running on UDP port (111), allowing a remote attacker to create a denial of service (DoS) con
7.5HIGH
CVE-2022-47561
all versions
The web application stores credentials in clear text in the "admin.xml" file, which can be accessed without logging into the websi
7.3HIGH
CVE-2022-47560
all versions
The lack of web request control on ekorCCP and ekorRCI devices allows a potential attacker to create custom requests to execute ma
5.7MEDIUM
CVE-2022-47559
all versions
Lack of device control over web requests in ekorCCP and ekorRCI, allowing an attacker to create customised requests to execute mal
8.6HIGH
CVE-2022-47558
all versions
Devices ekorCCP and ekorRCI are vulnerable due to access to the FTP service using default credentials. Exploitation of this vulner
9.4CRITICAL
CVE-2022-47557
all versions
Vulnerability in ekorCCP and ekorRCI that could allow an attacker with access to the network where the device is located to decryp
6.1MEDIUM
CVE-2022-47556
all versions
Uncontrolled resource consumption in ekorRCI, allowing an attacker with low-privileged access to the web server to send continuous
6.5MEDIUM
CVE-2022-47555
all versions
Operating system command injection in ekorCCP and ekorRCI, which could allow an authenticated attacker to execute commands, create
9.3CRITICAL
CVE-2022-47554
all versions
Exposure of sensitive information in ekorCCP and ekorRCI, potentially allowing a remote attacker to obtain critical information fr
8.2HIGH
CVE-2022-47553
all versions
Incorrect authorisation in ekorCCP and ekorRCI, which could allow a remote attacker to obtain resources with sensitive information
8.6HIGH
threatengine.sh