CVE-2023-6689: Efacec Bcu 500 Firmware

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A successful CSRF attack could force the user to perform state changing requests on the application. If the victim is an administrative account, a CSRF attack could compromise the entire web application.

Affected products

  • Efacec Bcu 500 Firmware: version 4.07 only

Published 2023-12-20. Last modified 2026-06-17.