60
CVE-2020-7491
—CVSS 3.1
7.5 high
EPSS
1%p69
Published
()
Modified
Description
**VERSION NOT SUPPORTED WHEN ASSIGNED** A legacy debug port account in TCMs installed in Tricon system versions 10.2.0 through 10.5.3 is visible on the network and could allow inappropriate access. This vulnerability was remediated in TCM version 10.5.4.
- Vendors
- schneider-electric
- Products
- tricon tcm 4351 firmware, tricon tcm 4352 firmware, tricon tcm 4351a firmware, tricon tcm 4351b firmware, tricon tcm 4352a firmware, tricon tcm 4352b firmware, tristation 1131 firmware
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N