VYPR

Trio J-Series License Free Ethernet Radio

by Schneider Electric

CVEs (3)

  • CVE-2023-5629HigDec 14, 2023
    risk 0.53cvss 8.2epss 0.00

    A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of information through phishing attempts over HTTP.

  • CVE-2023-5630MedDec 14, 2023
    risk 0.42cvss 6.5epss 0.00

    A CWE-494: Download of Code Without Integrity Check vulnerability exists that could allow a privileged user to install an untrusted firmware.

  • CVE-2013-2782Aug 28, 2013
    risk 0.00cvss epss 0.01

    Schneider Electric Trio J-Series License Free Ethernet Radio with firmware 3.6.0 through 3.6.3 uses the same AES encryption key across different customers' installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging…