CVE-2024-22083: Elspec-Ltd g5dfr Firmware

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. A hardcoded backdoor session ID exists that can be used for further access to the device, including reconfiguration tasks.

Affected products

  • Elspec-Ltd g5dfr Firmware: before 1.2.1.12 (fixed in 1.2.1.12)

Published 2024-03-20. Last modified 2026-06-17.