CVE-2023-27394 Information
Mar 29, 2023
cve
Description
Osprey Pump Controller version 1.01 is vulnerable an unauthenticated OS command injection vulnerability. This can be exploited to inject and execute arbitrary shell commands through a HTTP GET parameter called by DataLogView.php EventsView.php and AlarmsView.php scripts.
Reference
https://www.cisa.gov/news-events/ics-advisories/icsa-23-082-06
Share on: