CVE-2022-47556 describes an uncontrolled resource consumption vulnerability in Ormazabal ekorRCI and ekorCCP products and their associated firmware. This flaw allows a low-privileged attacker to trigger a Denial of Service (DoS) by sending continuous, legitimate web requests to an improperly validated functionality. Rated 6.5 MEDIUM, the vulnerability has a network attack vector, low attack complexity, and high impact on availability. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
601jCPE matchmatch criteria | cpe:2.3:o:ormazabal:ekorrci_firmware:601j:*:*:*:*:*:*:* | ||
601jCPE matchmatch criteria | cpe:2.3:o:ormazabal:ekorccp_firmware:601j:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.