QID 591271

Date Published: 2023-01-06

QID 591271: Schneider Electric PowerLogic ION8650/ION8800/ION7x50/ION7700/73xx /ION83xx/84xx/85xx/8600 Power Meters Vulnerability (SEVD-2021-068-03)

AFFECTED PRODUCTS
ION8650: All versions prior to V4.40.1
ION8800: All versions prior to V372
ION7x50: (Hardware rev. 4 or earlier*) All versions prior to V376
ION7x50: (Hardware rev. 5*) All versions prior to V416
ION7700/73xx: All versions.
ION83xx/84xx/85xx/8600: All versions.

QID Detection Logic:
This QID checks for the Vulnerable version of Schneider Electric PowerLogic ION8650/ION8800/ION7x50/ION7700/73xx /ION83xx/84xx/85xx/8600 Power Meters using passive scanning

Successful exploitation of these vulnerabilities may risk meter reboot, which could result in unintended device behavior.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as High - 7.8 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section SEVD-2021-068-03 for affected packages and patching details.

    Vendor References

    CVEs related to QID 591271

    Software Advisories
    Advisory ID Software Component Link
    SEVD-2021-068-03 URL Logo www.se.com/in/en/download/document/SEVD-2021-068-03/