Filtered by vendor Schneider-electric Subscriptions
Filtered by product Easergy Builder Subscriptions
Total 6 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-7515 1 Schneider-electric 1 Easergy Builder 2021-12-10 7.8 High
A CWE-321: Use of hard-coded cryptographic key stored in cleartext vulnerability exists in Easergy Builder V1.4.7.2 and prior which could allow an attacker to decrypt a password.
CVE-2020-7516 1 Schneider-electric 1 Easergy Builder 2021-12-10 7.8 High
A CWE-316: Cleartext Storage of Sensitive Information in Memory vulnerability exists in Easergy Builder V1.4.7.2 and prior which could allow an attacker access to login credentials.
CVE-2020-7517 1 Schneider-electric 1 Easergy Builder 2020-07-27 5.5 Medium
A CWE-312: Cleartext Storage of Sensitive Information vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to read user credentials.
CVE-2020-7514 1 Schneider-electric 1 Easergy Builder 2020-07-27 7.8 High
A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker access to the authorization credentials for a device and gain full access.
CVE-2020-7518 1 Schneider-electric 1 Easergy Builder 2020-07-27 7.5 High
A CWE-20: Improper input validation vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to modify project configuration files.
CVE-2020-7519 1 Schneider-electric 1 Easergy Builder 2020-07-27 7.5 High
A CWE-521: Weak Password Requirements vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to compromise a user account.