CVE-2020-7508
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
A CWE-307 Improper Restriction of Excessive Authentication Attempts vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to gain full access by brute force.
Affected (1)
Products: Schneider Electric: Easergy T300 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.5.2 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Easergy T300 | All versions |
References (2)
Source: cybersecurity@se.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.