EFACEC UC 500是葡萄牙EFACEC公司的一种解决方案,为公用事业和工业应用提供一体化的灵活通信网关、自动化平台和 HMI 解决方案。 EFACEC UC 500 存在安全漏洞,该漏洞源于具有网络访问权限的攻击者可以执行中间人攻击并捕获敏感信息,以获得对应用程序的未经授权的访问。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-50707 | 9.6 CRITICAL | Uncontrolled Resource Consumption in EFACEC BCU 500 |
| CVE-2023-6689 | 8.2 HIGH | Cross-Site Request Forgery in EFACEC BCU 500 |
| CVE-2023-50705 | 5.3 MEDIUM | Exposure of Sensitive Information to an Unauthorized Actor in EFACEC UC 500E |
| CVE-2023-50704 | 4.3 MEDIUM | URL Redirection to Untrusted Site ('Open Redirect') in EFACEC UC 500E |
| CVE-2023-50706 | 4.1 MEDIUM | Improper Access Control in EFACEC UC 500E |
No comments yet