cve/2023/CVE-2023-28375.md
2024-05-25 21:48:12 +02:00

825 B

CVE-2023-28375

Description

Osprey Pump Controller version 1.01 is vulnerable to an unauthenticated file disclosure. Using a GET parameter, attackers can disclose arbitrary files on the affected device and disclose sensitive and system information.

POC

Reference

No PoCs from references.

Github