High severity8.3NVD Advisory· Published Jun 2, 2022· Updated Jun 17, 2026
CVE-2022-30238
CVE-2022-30238
Description
A CWE-287: Improper Authentication vulnerability exists that could allow an attacker to take over the admin account when an attacker hijacks a session. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)
Affected products
6- cpe:2.3:o:schneider-electric:wiser_smart_eer21000_firmware:*:*:*:*:*:*:*:*Range: <=4.5
- cpe:2.3:o:schneider-electric:wiser_smart_eer21001_firmware:*:*:*:*:*:*:*:*Range: <=4.5
<=V4.5+ 1 more
- (no CPE)range: <=V4.5
- (no CPE)range: EER21000
- Range: <=V4.5
- Range: <=V4.5
Patches
Vulnerability mechanics
References
1- www.se.com/ww/en/download/document/SEVD-2022-130-03/nvdMitigationVendor Advisory
News mentions
0No linked articles in our index yet.