First published: Thu Mar 11 2021(Updated: )
A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION8650, ION8800, ION7650, ION7700/73xx, and ION83xx/84xx/85xx/8600 (see security notifcation for affected versions), which could cause the meter to reboot.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Powerlogic Ion8650 Firmware | <4.40.1 | |
Schneider-electric Powerlogic Ion8650 | ||
Schneider-electric Powerlogic Ion8800 Firmware | <372 | |
Schneider-electric Powerlogic Ion8800 | ||
Schneider-electric Powerlogic Ion7550 Firmware | <376 | |
Schneider-electric Powerlogic Ion7550 | =4.0 | |
Schneider-electric Powerlogic Ion7650 Firmware | <376 | |
Schneider-electric Powerlogic Ion7650 | =4.0 | |
Schneider-electric Powerlogic Ion7700 Firmware | ||
Schneider-electric Powerlogic Ion7700 | ||
Schneider-electric Powerlogic Ion7300 Firmware | ||
Schneider-electric Powerlogic Ion7300 | ||
Schneider-electric Powerlogic Ion8300 Firmware | ||
Schneider-electric Powerlogic Ion8300 | ||
Schneider-electric Powerlogic Ion8400 Firmware | ||
Schneider-electric Powerlogic Ion8400 | ||
Schneider-electric Powerlogic Ion8500 Firmware | ||
Schneider-electric Powerlogic Ion8500 | ||
Schneider-electric Powerlogic Ion8600 Firmware | ||
Schneider-electric Powerlogic Ion8600 | ||
Schneider-electric Powerlogic Ion7550 Firmware | <416 | |
Schneider-electric Powerlogic Ion7550 | =5.0 | |
Schneider-electric Ion7650 Firmware | <416 | |
Schneider-electric Powerlogic Ion7650 | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-22713 is a CWE-119 vulnerability in PowerLogic ION8650, ION8800, ION7650, ION7700/73xx, and ION83xx/84xx/85xx/8600 which could cause the meter to reboot.
PowerLogic ION8650, ION8800, ION7650, ION7700/73xx, and ION83xx/84xx/85xx/8600 are affected by CVE-2021-22713.
The severity of CVE-2021-22713 is high with a CVSS score of 7.5.
To fix CVE-2021-22713, apply the necessary security updates provided by Schneider-electric.
You can find more information about CVE-2021-22713 at [https://www.se.com/ww/en/download/document/SEVD-2021-068-03](https://www.se.com/ww/en/download/document/SEVD-2021-068-03).