CVE-2022-30235: Critical severity wiser smart eer21000 vulnerability
A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could allow unauthorized access when an attacker uses brute force. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-30235?
CVE-2022-30235 has a moderate severity rating due to its potential for unauthorized access through brute force attacks.
How do I fix CVE-2022-30235?
To fix CVE-2022-30235, update the Wiser Smart EER21000 or EER21001 firmware to a version later than V4.5.
What products are affected by CVE-2022-30235?
CVE-2022-30235 affects Schneider Electric's Wiser Smart EER21000 and EER21001 firmware versions V4.5 and prior.
Can CVE-2022-30235 lead to data breaches?
Yes, CVE-2022-30235 could potentially lead to unauthorized access and data breaches if exploited.
What mitigations are recommended for CVE-2022-30235?
It is recommended to implement account lockout policies and monitor access logs in addition to updating the firmware for CVE-2022-30235.