CyberSec.Space Logo
返回 CVE 浏览器

CVE-2020-7503

HIGH
8.8
CVSS Severity Score
EPSS Score0.1220%
EPSS Percentile27.72th
Published2020年6月16日
Last Modified2024年11月21日

Vulnerability Description

A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to execute malicious commands on behalf of a legitimate user when xsrf-token data is intercepted.

Affected Platforms (CPE)

💻
Schneider Electric

Easergy T300 Firmware

<= 1.5.2

References & Advisories

相关漏洞威胁