EFACEC UC 500是葡萄牙EFACEC公司的一种解决方案,为公用事业和工业应用提供一体化的灵活通信网关、自动化平台和 HMI 解决方案。 EFACEC UC 500 存在信息泄露漏洞,该漏洞源于攻击者可能会创建恶意请求来获取有关 Web 服务器的敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-50707 | 9.6 CRITICAL | Uncontrolled Resource Consumption in EFACEC BCU 500 |
| CVE-2023-6689 | 8.2 HIGH | Cross-Site Request Forgery in EFACEC BCU 500 |
| CVE-2023-50703 | 6.3 MEDIUM | Cleartext Transmission of Sensitive Information in EFACEC UC 500E |
| CVE-2023-50704 | 4.3 MEDIUM | URL Redirection to Untrusted Site ('Open Redirect') in EFACEC UC 500E |
| CVE-2023-50706 | 4.1 MEDIUM | Improper Access Control in EFACEC UC 500E |
No comments yet