Lucene search

K
cvelistSchneiderCVELIST:CVE-2021-22764
HistoryJun 11, 2021 - 3:40 p.m.

CVE-2021-22764

2021-06-1115:40:47
CWE-287
schneider
www.cve.org
1
improper authentication
powerlogic devices
modbus tcp protocol

EPSS

0.002

Percentile

60.4%

A CWE-287: Improper Authentication vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could cause loss of connectivity to the device via Modbus TCP protocol when an attacker sends a specially crafted HTTP request.

CNA Affected

[
  {
    "product": "PowerLogic PM55xx, PowerLogic EGX100, and PowerLogic EGX300 (see security notification for version infromation) ",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "PowerLogic PM55xx, PowerLogic EGX100, and PowerLogic EGX300 (see security notification for version infromation)"
      }
    ]
  }
]

EPSS

0.002

Percentile

60.4%

Related for CVELIST:CVE-2021-22764