Efacec
Efacec UC 500e Firmware: vulnerabilidades y CVE
Efacec UC 500e Firmware tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-50706 | Media (4.3) | 0.24% | — | 20 dic 2023 | A user without administrator permissions with access to the UC500 windows system could perform a memory dump of the running processes and extract clear credentials or valid session tokens. |
| CVE-2023-50705 | Media (5.3) | 0.52% | — | 20 dic 2023 | An attacker could create malicious requests to obtain sensitive information about the web server. |
| CVE-2023-50704 | Media (6.1) | 0.39% | — | 20 dic 2023 | An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain and could be leveraged to facilitate phishing attacks against application users. |
| CVE-2023-50703 | Media (5.9) | 0.26% | — | 20 dic 2023 | An attacker with network access could perform a man-in-the-middle (MitM) attack and capture sensitive information to gain unauthorized access to the application. |