CVE-2022-44037

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/11/2022
Last modified:
25/04/2025

Description

An access control issue in APsystems ENERGY COMMUNICATION UNIT (ECU-C) Power Control Software V4.1NA, V3.11.4, W2.1NA, V4.1SAA, C1.2.2 allows attackers to access sensitive data and execute specific commands and functions with full admin rights without authenticating allows him to perform multiple attacks, such as attacking wireless network in the product's range.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apsystems:ecu-c_firmware:c1.2.2:*:*:*:*:*:*:*
cpe:2.3:o:apsystems:ecu-c_firmware:v3.11.4:*:*:*:*:*:*:*
cpe:2.3:o:apsystems:ecu-c_firmware:v4.1na:*:*:*:*:*:*:*
cpe:2.3:o:apsystems:ecu-c_firmware:v4.1saa:*:*:*:*:*:*:*
cpe:2.3:o:apsystems:ecu-c_firmware:w2.1na:*:*:*:*:*:*:*
cpe:2.3:h:apsystems:ecu-c:-:*:*:*:*:*:*:*