CVE-2020-7508: Critical severity schneider electric easergy t300 firmware vulnerability
A CWE-307 Improper Restriction of Excessive Authentication Attempts vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to gain full access by brute force.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-7508?
CVE-2020-7508 has a high severity rating due to the potential for an attacker to gain full access through brute force methods.
How do I fix CVE-2020-7508?
To fix CVE-2020-7508, it is recommended to upgrade the Easergy T300 firmware to version 1.5.3 or later.
What systems are affected by CVE-2020-7508?
CVE-2020-7508 affects Schneider Electric Easergy T300 firmware versions 1.5.2 and older.
What type of vulnerability is CVE-2020-7508?
CVE-2020-7508 is classified as a CWE-307 vulnerability, related to improper restriction of excessive authentication attempts.
Can CVE-2020-7508 be exploited remotely?
Yes, CVE-2020-7508 can be exploited remotely, allowing attackers to attempt brute force attacks from outside the network.