CVE-2020-7504
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Exploitability: 3.9 / Impact: 1.4
Source: NVD
Description
A CWE-20: Improper Input Validation vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to disable the webserver service on the device when specially crafted network packets are sent.
Affected (1)
Products: Schneider Electric: Easergy T300 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.5.2 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Easergy T300 | All versions |
References (2)
Source: cybersecurity@se.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.