CVE-2024-22083: Elspec-Ltd g5dfr Firmware
Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. A hardcoded backdoor session ID exists that can be used for further access to the device, including reconfiguration tasks.
Affected products
- Elspec-Ltd g5dfr Firmware: before 1.2.1.12 (fixed in 1.2.1.12)
Published 2024-03-20. Last modified 2026-06-17.