← Back

CVE-2012-6427

nvd nist
Published: Dec 23, 2012Modified: Apr 29, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The Carlo Gavazzi EOS-Box does not check the validity of the data before executing queries. By accessing the SQL table of certain pages that do not require authentication, attackers can leak information from the device. This could allow the attacker to compromise confidentiality.

Affected (2)

2 products
Configuration A
2 vulnerable

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource

Timeline

No history available yet.