ZeroHour

CVE-2020-7505

CVSS 3.1
7.2 high
EPSS
<1%p58
Published
()
Modified
Description

A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.

Vendors
schneider-electric
Products
easergy t300 firmware
Weakness
CWE-494
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.