QID 590944
Date Published: 2022-07-29
QID 590944: Schneider Electric Easergy P5 and P3 (Update A) Multiple Vulnerabilities (ICSA-22-055-03)
AFFECTED PRODUCTS
The following versions of Easergy P5, a medium voltage protection relay, are affected:
All firmware versions prior to v01.401.102
The following versions of Easergy P3, a medium voltage protection relay, are affected:
All versions prior to v30.205
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Successful exploitation of these vulnerabilities may disclose device credentials, cause a denial-of-service condition, device reboot, or allow an attacker to gain full control of the relay. This could result in loss of protection to your electrical network.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-22-055-03 for affected packages and patching details.
Vendor References
- ICSA-22-055-03 -
www.us-cert.gov/ics/advisories/ICSA-22-055-03
CVEs related to QID 590944
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-22-055-03 |
|