NA

CVE-2023-28375

Published: 28/03/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Osprey Pump Controller version 1.01 is vulnerable to an unauthenticated file disclosure. Using a GET parameter, attackers can disclose arbitrary files on the affected device and disclose sensitive and system information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

propumpservice osprey_pump_controller_firmware 1.01