First published: Fri Jun 11 2021(Updated: )
A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could allow an attacker administrator level access to a device.
Credit: cybersecurity@se.com cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Powerlogic Pm5560 Firmware | <2.7.8 | |
Schneider-electric Powerlogic Pm5560 | ||
Schneider-electric Powerlogic Pm5561 Firmware | <10.7.3 | |
Schneider-electric Powerlogic Pm5561 | ||
Schneider-electric Powerlogic Pm5562 Firmware | <=2.5.4 | |
Schneider-electric Powerlogic Pm5562 | ||
Schneider-electric Powerlogic Pm5563 Firmware | <2.7.8 | |
Schneider-electric Powerlogic Pm5563 | ||
Schneider-electric Powerlogic Pm8ecc Firmware | ||
Schneider-electric Powerlogic Pm8ecc | ||
All of | ||
Schneider-electric Powerlogic Pm5560 Firmware | <2.7.8 | |
Schneider-electric Powerlogic Pm5560 | ||
All of | ||
Schneider-electric Powerlogic Pm5561 Firmware | <10.7.3 | |
Schneider-electric Powerlogic Pm5561 | ||
All of | ||
Schneider-electric Powerlogic Pm5562 Firmware | <=2.5.4 | |
Schneider-electric Powerlogic Pm5562 | ||
All of | ||
Schneider-electric Powerlogic Pm5563 Firmware | <2.7.8 | |
Schneider-electric Powerlogic Pm5563 | ||
All of | ||
Schneider-electric Powerlogic Pm8ecc Firmware | ||
Schneider-electric Powerlogic Pm8ecc |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.