The vendor explicitly identifies these products as affected by this CVE.
- Control Center Server (CCS)
- Summary
- The Control Center Server (CCS) contains an SQL injection vulnerability in its XML-based communication protocol as provided by default on ports 5444/tcp and 5440/tcp. An authenticated remote attacker could exploit this vulnerability to read or modify the CCS database and potentially execute administrative database operations or operating system commands.
- Remediation
- Update to V1.5.0 or later version
