Vulnerability Description
Operating system command injection in ekorCCP and ekorRCI, which could allow an authenticated attacker to execute commands, create new users with elevated privileges or set up a backdoor.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ormazabal | Ekorrci Firmware | 601j |
| Ormazabal | Ekorrci | - |
| Ormazabal | Ekorccp Firmware | 601j |
| Ormazabal | Ekorccp | - |
Related Weaknesses (CWE)
References
- https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-Third Party Advisory
- https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-Third Party Advisory
FAQ
What is CVE-2022-47555?
CVE-2022-47555 is a vulnerability with a CVSS score of 9.3 (CRITICAL). Operating system command injection in ekorCCP and ekorRCI, which could allow an authenticated attacker to execute commands, create new users with elevated privileges or set up a backdoor.
How severe is CVE-2022-47555?
CVE-2022-47555 has been rated CRITICAL with a CVSS base score of 9.3/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-47555?
Check the references section above for vendor advisories and patch information. Affected products include: Ormazabal Ekorrci Firmware, Ormazabal Ekorrci, Ormazabal Ekorccp Firmware, Ormazabal Ekorccp.