Schneider-electric

Easergy T300 Firmware

24 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.39%
  • Published 16.06.2020 20:15:15
  • Last modified 21.11.2024 05:37:16

A CWE-400: Uncontrolled Resource Consumption vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to login multiple times resulting in a denial of service.

  • EPSS 0.32%
  • Published 16.06.2020 20:15:15
  • Last modified 21.11.2024 05:37:16

A CWE-200: Information Exposure vulnerability exists in Easergy T300, Firmware V1.5.2 and prior, which could allow an attacker to pack or unpack the archive with the firmware for the controller and modules using the usual tar archiver resulting in an...

  • EPSS 0.35%
  • Published 16.06.2020 20:15:15
  • Last modified 21.11.2024 05:37:16

A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.

  • EPSS 0.38%
  • Published 16.06.2020 20:15:15
  • Last modified 21.11.2024 05:37:16

A CWE-20: Improper Input Validation vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to disable the webserver service on the device when specially crafted network packets are sent.