5
CVSSv2

CVE-2020-28216

Published: 11/12/2020 Updated: 14/12/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A CWE-311: Missing Encryption of Sensitive Data vulnerability exists in Easergy T300 (firmware 2.7 and older), that would allow an malicious user to read network traffic over HTTP protocol.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric easergy_t300_firmware