Easergy t300 firmware
This hub aggregates every CVE we track for Easergy t300 firmware, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
24
CVEs tracked
5
Critical
13
High
0
In CISA KEV
Severity distribution
HIGH13MEDIUM6CRITICAL5
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Easergy t300 firmware.
- CVE-2020-25180Rockwell Automation ISaGRAF5 Runtime Use of Hard-coded Cryptographic Key5.3
- CVE-2020-25184Rockwell Automation ISaGRAF5 Runtime Unprotected Storage of Credentials7.8
- CVE-2020-25176Rockwell Automation ISaGRAF5 Runtime Relative Path Traversal9.1
- CVE-2020-25182Rockwell Automation ISaGRAF5 Runtime Uncontrolled Search Path Element6.7
- CVE-2020-25178Rockwell Automation ISaGRAF5 Runtime Cleartext Transmission of Sensitive Information7.5
- CVE-2021-22771A CWE-1236: Improper Neutralization of Formula Elements in a CSV File vulnerability exists in Easergy T300 with firmware V2.7.1 and older that would allow arbitrary command execution.7.3
- CVE-2021-22770A CWE-200: Information Exposure vulnerability exists in Easergy T300 with firmware V2.7.1 and older that exposes sensitive information to an actor not explicitly authorized to have access to that i...6.5
- CVE-2021-22769A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Easergy T300 with firmware V2.7.1 and older that could expose files or directory content when access from an a...4.3
- CVE-2020-28218A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists in Easergy T300 (firmware 2.7 and older), that would allow an attacker to trick a user into initiating an unint...6.5
- CVE-2020-28217A CWE-311: Missing Encryption of Sensitive Data vulnerability exists in Easergy T300 (firmware 2.7 and older), that would allow an attacker to read network traffic over HTTP protocol.7.5
- CVE-2020-28216A CWE-311: Missing Encryption of Sensitive Data vulnerability exists in Easergy T300 (firmware 2.7 and older), that would allow an attacker to read network traffic over HTTP protocol.7.5
- CVE-2020-28215A CWE-862: Missing Authorization vulnerability exists in Easergy T300 (firmware 2.7 and older), that could cause a wide range of problems, including information exposures, denial of service, and ar...9.8
- CVE-2020-7561A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T300 (with firmware 2.7 and older) that could cause a wide range of problems, including information exposure,...9.8
- CVE-2020-7513A CWE-312: Cleartext Storage of Sensitive Information vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to intercept traffic and read configurati...7.5
- CVE-2020-7512A CWE-1103: Use of Platform-Dependent Third Party Components with vulnerabilities vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to exploit th...9.8
Product normalization is registry-driven with AI assist and human review. How it works