VendorsSchneider Electricpowerlogic_pm8eccall versions
Vulnerabilities

Schneider Electric Schneider-Electric PowerLogic PM8ECC

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2021-22763
A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could allow an attacker administrator level access to a device.
Published 2021-06-11 · Modified
10.0EPSS 0.019
CVE-2016-5818
An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credentials allow access to the device.
Published 2017-02-13 · Modified
9.8EPSS 0.019
CVE-2016-4513
Cross-site scripting (XSS) vulnerability in the Schneider Electric PowerLogic PM8ECC module before 2.651 for PowerMeter 800 devices allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2016-06-26 · Modified
6.1EPSS 0.009