A CWE-200: Information Exposure vulnerability exists in Easergy T300, Firmware V1.5.2 and prior, which could allow an attacker to pack or unpack the archive with the firmware for the controller and modules using the usual tar archiver resulting in an information exposure.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-06-16 13:15
Updated : 2021-06-11 11:15
NVD link : CVE-2020-7506
Mitre link : CVE-2020-7506
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
schneider-electric
- easergy_t300
- easergy_t300_firmware