CVE-2020-7511: High severity schneider electric easergy t300 firmware vulnerability
Published Jun 16, 2020
·Updated
A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to acquire a password by brute force.
Affected Software
2 affected components
Schneider-electric Easergy T300 Firmware<=1.5.2
Schneider-electric Easergy T300
Event History
Jun 16, 2020
CVE Published
via MITRE·07:45 PM
Data Sourced
via MITRE·07:45 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-7511?
CVE-2020-7511 has a medium severity level due to the potential for brute force password acquisition.
2
How do I fix CVE-2020-7511?
To fix CVE-2020-7511, users should upgrade to Easergy T300 Firmware version 1.5.3 or later.
3
What systems are affected by CVE-2020-7511?
CVE-2020-7511 affects Schneider Electric Easergy T300 devices running firmware version 1.5.2 and older.
4
What kind of attack is possible with CVE-2020-7511?
An attacker can exploit CVE-2020-7511 to perform a brute force attack and potentially acquire user passwords.
5
Is there a patch available for CVE-2020-7511?
Yes, a patch in the form of a firmware update is available to mitigate CVE-2020-7511.