PT-2024-2037 · Schneider Electric · Schneider Electric Easergy T200

Published

2024-03-12

·

Updated

2024-03-18

·

CVE-2024-2051

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Schneider Electric Easergy T200 (affected versions not specified)
Description The issue is related to an improper restriction of excessive authentication attempts, which could allow an attacker to conduct brute-force attacks against the login form, potentially leading to account takeover and unauthorized access to the system. This could enable a remote attacker to gain unauthorized access to the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Restriction of Excessive Authentication Attempts

Weakness Enumeration

Related Identifiers

BDU:2024-01915
CVE-2024-2051

Affected Products

Schneider Electric Easergy T200