Fiche vulnérabilité
CVE-2023-1897 : faille élevée atlascopco power focus 6000 firmware (CVSS 7.5)
Description
Atlas Copco Power Focus 6000 web server does not sanitize the login information stored by the authenticated user’s browser, which could allow an attacker with access to the user’s computer to gain credential information of the controller.
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 12 juin 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- atlascopco power focus 6000 firmware