Critical severity9.8NVD Advisory· Published Jul 21, 2021· Updated Jun 17, 2026
CVE-2021-22772
CVE-2021-22772
Description
A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T200 ((Modbus) SC2-04MOD-07000100 and earlier), Easergy T200 ((IEC104) SC2-04IEC-07000100 and earlier), and Easergy T200 ((DNP3) SC2-04DNP-07000102 and earlier) that could cause unauthorized operation when authentication is bypassed.
Affected products
5- cpe:2.3:o:schneider-electric:t200e_firmware:*:*:*:*:*:*:*:*Range: <=sc2-04mod-07000100
- cpe:2.3:o:schneider-electric:t200i_firmware:*:*:*:*:*:*:*:*Range: <=sc2-04mod-07000100
- cpe:2.3:o:schneider-electric:t200p_firmware:*:*:*:*:*:*:*:*Range: <=sc2-04mod-07000100
- Easergy/Easergy T200description
- Range: <=SC2-04MOD-07000100, <=SC2-04IEC-07000100, <=SC2-04DNP-07000102
Patches
Vulnerability mechanics
References
1- download.schneider-electric.com/filesnvdVendor Advisory
News mentions
0No linked articles in our index yet.