Information Exposure Risk in Easergy T300 Firmware by Schneider Electric
CVE-2020-7510

7.5HIGH

Key Information:

Vendor
CVE Published:
16 June 2020

Summary

The Easergy T300 device, specifically firmware version 1.5.2 and older, is susceptible to vulnerabilities that may permit unauthorized access to sensitive information, including private keys. This information exposure can significantly compromise the security of the device, potentially leading to further exploitation. It is essential for users of affected firmware to implement security measures and upgrade to more secure versions to mitigate risks associated with this vulnerability.

Affected Version(s)

Easergy T300 (Firmware version 1.5.2 and older) Easergy T300 (Firmware version 1.5.2 and older)

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.