CVE-2020-8007

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 8, 2024
CWE ID 78

Summary

CVE-2020-8007 is a serious vulnerability affecting the pwrstudio web application of EV Charger in Circontrol Raption versions up to 5.6.2. An attacker can exploit this issue by injecting OS commands through three configuration menu fields, specifically ntpserver0, ntpserver1, and pingip. Successful exploitation could lead to unauthorized system access, data theft, or other malicious activities, posing a significant risk to the affected system. Organizations using Circontrol Raption are urged to apply the necessary patch or update as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share