9.8
CVSSv3

CVE-2023-27886

Published: 28/03/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Osprey Pump Controller version 1.01 is vulnerable to an unauthenticated OS command injection vulnerability. This can be exploited to inject and execute arbitrary shell commands through a HTTP POST parameter called by index.php script.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

propumpservice osprey_pump_controller_firmware 1.01