CVE-2020-7513: High severity schneider electric easergy t300 firmware vulnerability
Published Jun 16, 2020
·Updated
A CWE-312: Cleartext Storage of Sensitive Information vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to intercept traffic and read configuration data.
Affected Software
2 affected components
Schneider-electric Easergy T300 Firmware<=1.5.2
Schneider-electric Easergy T300
Event History
Jun 16, 2020
CVE Published
via MITRE·07:45 PM
Data Sourced
via MITRE·07:45 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-7513?
CVE-2020-7513 is categorized as a high severity vulnerability due to the potential exposure of sensitive configuration data.
2
How do I fix CVE-2020-7513?
To remediate CVE-2020-7513, update the Easergy T300 firmware to a version newer than 1.5.2.
3
What can an attacker do with CVE-2020-7513?
An attacker exploiting CVE-2020-7513 could intercept network traffic and access sensitive configuration information.
4
Which versions of Easergy T300 are affected by CVE-2020-7513?
Easergy T300 firmware version 1.5.2 and earlier are affected by CVE-2020-7513.
5
What is the nature of the vulnerability identified in CVE-2020-7513?
CVE-2020-7513 is a cleartext storage vulnerability that leads to inadequate protection of sensitive information.