7.5
CVSSv2

CVE-2020-7548

Published: 01/12/2020 Updated: 08/12/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A CWE-330 - Use of Insufficiently Random Values vulnerability exists in Smartlink, PowerTag, and Wiser Series Gateways (see security notification for version information) that could allow unauthorized users to login.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric acti9_smartlink_si_d_firmware

schneider-electric acti9_smartlink_si_b_firmware

schneider-electric acti9_powertag_link_firmware

schneider-electric acti9_powertag_link_hd_firmware

schneider-electric acti9_smartlink_el_b_firmware

schneider-electric wiser_link_firmware

schneider-electric wiser_energy_firmware