Vulnerability Details CVE-2023-25912
The webreport generation feature in the Danfoss AK-EM100 allows an unauthorized actor to generate a web report that discloses sensitive information such as the internal IP address, usernames and internal device values.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.1%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2023-25912
-
cpe:2.3:h:danfoss:ak-em100:-
-
cpe:2.3:o:danfoss:ak-em100_firmware:*