CVE-2023-5629

HIGH

Schneider-electric Eb450 Firmware < 2.7.0 - Open Redirect

Title source: rule
STIX 2.1

Description

A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of information through phishing attempts over HTTP.

Scores

CVSS v3 8.2
EPSS 0.0018
EPSS Percentile 38.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N

Details

CWE
CWE-601
Status published
Products (16)
schneider-electric/eb450_firmware
schneider-electric/eb45e_firmware
schneider-electric/eh450_firmware
schneider-electric/eh45e_firmware
schneider-electric/er450_firmware
schneider-electric/er45e_firmware
schneider-electric/jr240_firmware
schneider-electric/jr900_firmware
schneider-electric/qb150_firmware < 2.7.0
schneider-electric/qb450_firmware < 2.7.0
... and 6 more
Published Dec 14, 2023
Tracked Since Feb 18, 2026