CVE Published: 02/06/2022 |
CVE Updated: 17/09/2024 |
CVE Year: 2022 Source: schneider |
Vendor: Schneider Electric |
Product: Wiser Smart Status : PUBLISHED
CVE-2022-30237 Description
A CWE-311: Missing Encryption of Sensitive Data vulnerability exists that could allow authentication credentials to be recovered when an attacker breaks the encoding. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)
Metrics
CVSS Version: 3.1 |
Base Score: 8.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N