← Back

CVE-2022-47561

nvd nist
Published: Sep 20, 2023Modified: Jun 17, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

The web application stores credentials in clear text in the "admin.xml" file, which can be accessed without logging into the website, which could allow an attacker to obtain credentials related to all users, including admin users, in clear text, and use them to subsequently execute malicious actions.

Affected (2)

2 products
Ekorccp Firmware
Ekorrci Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 601j
Running on/withPlatform Versions
Ormazabal
Ekorccp
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 601j
Running on/withPlatform Versions
Ormazabal
Ekorrci
All versions

References (2)

Timeline

No history available yet.