CVE-2022-47557 | Date: (C)2023-09-19 (M)2024-05-24 |
Vulnerability in ekorCCP and ekorRCI that could allow an attacker with access to the network where the device is located to decrypt the credentials of privileged users, and subsequently gain access to the system to perform malicious actions.
CVSS Score and Metrics +CVSS Score and Metrics -CVSS V3 Severity: | CVSS V2 Severity: |
CVSS Score : 6.1 | CVSS Score : |
Exploit Score: 1.8 | Exploit Score: |
Impact Score: 4.2 | Impact Score: |
|
CVSS V3 Metrics: | CVSS V2 Metrics: |
Attack Vector: LOCAL | Access Vector: |
Attack Complexity: LOW | Access Complexity: |
Privileges Required: LOW | Authentication: |
User Interaction: NONE | Confidentiality: |
Scope: UNCHANGED | Integrity: |
Confidentiality: HIGH | Availability: |
Integrity: LOW | |
Availability: NONE | |
| |