← Zuruck zu CVEs
CVE-2021-22770
MEDIUM6.5
Beschreibung
A CWE-200: Information Exposure vulnerability exists in Easergy T300 with firmware V2.7.1 and older that exposes sensitive information to an actor not explicitly authorized to have access to that information.
CVE Details
CVSS v3.1 Bewertung6.5
SchweregradMEDIUM
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht7/21/2021
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
schneider-electric:easergy_t300schneider-electric:easergy_t300_firmware
Schwachen (CWE)
CWE-200
Referenzen
http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-194-02(cybersecurity@se.com)
http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-194-02(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.