A CWE-1236: Improper Neutralization of Formula Elements in a CSV File vulnerability exists in Easergy T300 with firmware V2.7.1 and older that would allow arbitrary command execution.
2021-07-21T15:15:15.047
2024-11-21T05:50:38.130
Modified
CVSSv3.1: 7.3 (HIGH)
AV:N/AC:M/Au:S/C:P/I:P/A:P
6.8
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | schneider-electric | easergy_t300_firmware | ≤ 2.7.1 | Yes |
Hardware | schneider-electric | easergy_t300 | - | No |