schneider-electric

765 tracked vulnerabilities.

CVE-2020-25184 HIGH
Schneider-electric Easergy T300 Firmware - Information Disclosure
Mar 18, 2022
CVSS 7.8
EPSS 0.00
CVE-2020-25182 MEDIUM
Schneider-electric Easergy T300 Firmware - Uncontrolled Search Path
Mar 18, 2022
CVSS 6.7
EPSS 0.00
CVE-2020-25180 MEDIUM
Schneider-electric Easergy T300 Firmware - Information Disclosure
Mar 18, 2022
CVSS 5.3
EPSS 0.00
CVE-2020-25178 HIGH
Schneider-electric Easergy T300 Firmware - Cleartext Transmission
Mar 18, 2022
CVSS 7.5
EPSS 0.00
CVE-2020-25176 CRITICAL
Schneider-electric Easergy T300 Firmware < 2.7.1 - Path Traversal
Mar 18, 2022
CVSS 9.1
EPSS 0.04
CVE-2020-7534 HIGH
Schneider Electric Modicon M340 BMXP342020 Firmware - Cross-Site Request Forgery
Feb 04, 2022
CVSS 8.8
EPSS 0.00
CVE-2020-28221 CRITICAL
EcoStruxure Operator Terminal Expert and Pro-face BLUE - Remote Code Execution via Ethernet Download Feature
Jan 26, 2021
CVSS 9.8
EPSS 0.01
CVE-2020-7560 HIGH
EcoStruxure Control Expert/Unity Pro - Code Injection
Dec 11, 2020
CVSS 8.6
EPSS 0.00
CVE-2020-7549 MEDIUM
Modicon M340 and Legacy Modicon Firmware - Denial of Service via Crafted HTTP Requests
Dec 11, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-7543 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-7542 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-7541 MEDIUM
Schneider Electric Modicon M340 - Unauthenticated Sensitive Data Exposure
Dec 11, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-7540 CRITICAL
Modicon M340 BMXP341000 Firmware < 3.30 - Unauthenticated Command Execution via HTTP Requests
Dec 11, 2020
CVSS 9.8
EPSS 0.00
CVE-2020-7539 HIGH
Modicon M340 BMXP34 Firmware < 3.30 - Denial of Service via HTTP Packet
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-7537 HIGH
Modicon M580 and M340 Firmware < 3.20 - Denial of Service via Crafted Modbus Read Physical Memory Request
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-7536 HIGH
Modicon M340 and BMXNOE/BMXNOR Firmware - Denial of Service via SNMP Network Parameter Modification
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-7535 HIGH
Modicon M340 BMXP341000 Firmware < 3.30 - Path Traversal via HTTP Request
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-28220 MEDIUM
Modicon M258 Firmware < 5.0.4.11 and SoMachine/SoMachine Motion - Buffer Overflow via File Transfer
Dec 11, 2020
CVSS 6.8
EPSS 0.00
CVE-2020-28219 HIGH
EcoStruxure Geo SCADA Expert 2019-2020 Credential Exposure via Virtual ViewX
Dec 11, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-28218 MEDIUM
Easergy T300 Firmware < 2.7 - Clickjacking
Dec 11, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-28217 HIGH
Easergy T300 Firmware < 2.7 - Missing Encryption of Sensitive Data
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-28216 HIGH
Easergy T300 Firmware < 2.7 - Missing Encryption of Sensitive Data
Dec 11, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-28215 CRITICAL
Easergy T300 Firmware < 2.7 - Missing Authorization
Dec 11, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-28214 MEDIUM
Modicon M221 Firmware - Use of a One-Way Hash with a Predictable Salt
Dec 11, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-7548 CRITICAL
Smartlink PowerTag Wiser Series Gateways - Info Disclosure
Dec 01, 2020
CVSS 9.8
EPSS 0.01