E3 Site Supervisor Control
cpe:2.3:o:nortekcontrol:emerge_e3_firmware:*:*:*:*:*:*:*
- < 2.31F01
A vulnerability exists in E3 Site Supervisor Control firmware versions prior to 2.31F01, where firmware upgrade packages are not signed. This lack of signature allows an attacker with admin access to the application services to create and install malicious firmware upgrade packages.
Exploitation of this vulnerability could lead to the installation of unauthorized and potentially harmful firmware, allowing for further exploitation of the device or application.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.