Known Vulnerabilities for Evlink Parking Ev.2 Firmware by Schneider-electric
Listed below are 10 of the newest known vulnerabilities associated with "Evlink Parking Ev.2 Firmware" by "Schneider-electric".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-22774 json | A CWE-759: Use of a One-Way Hash without a Salt vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior ... | 7.5 - HIGH | 2021-07-21 | 2021-07-28 |
| CVE-2021-22773 json | A CWE-620: Unverified Password Change vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4... | 6.5 - MEDIUM | 2021-07-21 | 2021-07-28 |
| CVE-2021-22730 json | A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V... | 9.8 - CRITICAL | 2021-07-21 | 2021-07-28 |
| CVE-2021-22729 json | A CWE-259: Use of Hard-coded Password vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4... | 9.8 - CRITICAL | 2021-07-21 | 2021-07-28 |
| CVE-2021-22728 json | A CWE-200: Information Exposure vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1),... | 6.5 - MEDIUM | 2021-07-21 | 2021-07-28 |
| CVE-2021-22727 json | A CWE-331: Insufficient Entropy vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1),... | 9.8 - CRITICAL | 2021-07-21 | 2021-07-28 |
| CVE-2021-22726 json | A CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to... | 8.1 - HIGH | 2021-07-21 | 2021-07-28 |
| CVE-2021-22723 json | A CWE-79: Improper Neutralization of Input During Web Page Generation (Cross-siteScripting) through Cross-Site Request Forger... | 6.1 - MEDIUM | 2021-07-21 | 2021-07-28 |
| CVE-2021-22722 json | A CWE-79: Improper Neutralization of Input During Web Page Generation ('Stored Cross-site Scripting') vulnerability exists in... | 5.4 - MEDIUM | 2021-07-21 | 2021-07-27 |
| CVE-2021-22721 json | A CWE-200: Information Exposure vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1),... | 5.3 - MEDIUM | 2021-07-21 | 2021-07-28 |