CVE-2021-22770
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
A CWE-200: Information Exposure vulnerability exists in Easergy T300 with firmware V2.7.1 and older that exposes sensitive information to an actor not explicitly authorized to have access to that information.
Affected (1)
Products: Schneider Electric: Easergy T300 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.7.1 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Easergy T300 | All versions |
References (2)
Source: cybersecurity@se.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.