Bcu 500 Firmware
by Efacec
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-50707 | Cri | 0.62 | 9.6 | 0.01 | Dec 20, 2023 | Through the exploitation of active user sessions, an attacker could send custom requests to cause a denial-of-service condition on the device. | ||
| CVE-2023-6689 | Hig | 0.53 | 8.2 | 0.00 | Dec 20, 2023 | A successful CSRF attack could force the user to perform state changing requests on the application. If the victim is an administrative account, a CSRF attack could compromise the entire web application. |
- risk 0.62cvss 9.6epss 0.01
Through the exploitation of active user sessions, an attacker could send custom requests to cause a denial-of-service condition on the device.
- risk 0.53cvss 8.2epss 0.00
A successful CSRF attack could force the user to perform state changing requests on the application. If the victim is an administrative account, a CSRF attack could compromise the entire web application.