Information Exposure Risk in Easergy T300 Firmware by Schneider Electric
CVE-2020-7510
7.5HIGH
Summary
The Easergy T300 device, specifically firmware version 1.5.2 and older, is susceptible to vulnerabilities that may permit unauthorized access to sensitive information, including private keys. This information exposure can significantly compromise the security of the device, potentially leading to further exploitation. It is essential for users of affected firmware to implement security measures and upgrade to more secure versions to mitigate risks associated with this vulnerability.
Affected Version(s)
Easergy T300 (Firmware version 1.5.2 and older) Easergy T300 (Firmware version 1.5.2 and older)
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved