PT-2023-15397 · Ekorrci+1 · Ekorrci+1

Jacinto Moral Matellán

·

Published

2023-09-19

·

Updated

2024-08-03

·

CVE-2022-47555

CVSS v3.1

9.3

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions ekorCCP and ekorRCI (affected versions not specified)
Description The issue is an operating system command injection in ekorCCP and ekorRCI, which could allow an authenticated attacker to execute commands, create new users with elevated privileges, or set up a backdoor.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2022-47555

Affected Products

Ekorccp
Ekorrci