CyberSec.Space Logo
Back to CVE Browser

CVE-2020-7503

HIGH
8.8
CVSS Severity Score
EPSS Score0.1220%
EPSS Percentile27.72th
PublishedJun 16, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to execute malicious commands on behalf of a legitimate user when xsrf-token data is intercepted.

Affected Platforms (CPE)

💻
Schneider Electric

Easergy T300 Firmware

<= 1.5.2

References & Advisories

Related Vulnerabilities