The vendor explicitly identifies these products as affected by this CVE.
- Schneider Electric Easergy P5 <=V01.401.102
- Summary
- A CWE-20: Improper Input Validation vulnerability exists that could cause the device watchdog function to be disabled if the attacker had access to privileged user credentials.
- Remediation
- V01.402.101 of the Easergy P5 firmware includes a fix for these vulnerabilities and is available on request from Schneider Electric’s Customer Care Center.
