CVE-2020-7492

MEDIUM

GP-Pro EX <4.09.100 - Info Disclosure

Title source: llm
STIX 2.1

Description

A CWE-521: Weak Password Requirements vulnerability exists in the GP-Pro EX V1.00 to V4.09.100 which could cause the discovery of the password when the user is entering the password because it is not masqueraded.

Scores

CVSS v3 6.5
EPSS 0.0029
EPSS Percentile 52.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Details

CWE
CWE-521
Status published
Products (1)
schneider-electric/gp-pro_ex_firmware 1.00 - 4.09.120
Published Jun 16, 2020
Tracked Since Feb 18, 2026