CVE-2021-22730
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4.0.1), and EVlink Smart Wallbox (EVB1A all versions prior to R8 V3.4.0.1 ) that could an attacker to gain unauthorized administrative privileges when accessing to the charging station web server.
A CWE-798: Se presenta una vulnerabilidad de uso de Credenciales Embebidas en EVlink City (EVC1S22P4 / EVC1S7P4 todas las versiones anteriores a R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 todas las versiones anteriores a R8 V3.4.0.1), y EVlink Smart Wallbox (EVB1A todas las versiones anteriores a R8 V3.4.0.1 ) que podría permitir a un atacante alcanzar privilegios administrativos no autorizados cuando se accede al servidor web de la estación de carga
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-06 CVE Reserved
- 2021-07-21 CVE Published
- 2024-04-05 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-798: Use of Hard-coded Credentials
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-194-06 | 2021-07-28 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Schneider-electric Search vendor "Schneider-electric" | Evlink City Evc1s22p4 Firmware Search vendor "Schneider-electric" for product "Evlink City Evc1s22p4 Firmware" | < r8_v3.4.0.1 Search vendor "Schneider-electric" for product "Evlink City Evc1s22p4 Firmware" and version " < r8_v3.4.0.1" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Evlink City Evc1s22p4 Search vendor "Schneider-electric" for product "Evlink City Evc1s22p4" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Evlink City Evc1s7p4 Firmware Search vendor "Schneider-electric" for product "Evlink City Evc1s7p4 Firmware" | < r8_v3.4.0.1 Search vendor "Schneider-electric" for product "Evlink City Evc1s7p4 Firmware" and version " < r8_v3.4.0.1" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Evlink City Evc1s7p4 Search vendor "Schneider-electric" for product "Evlink City Evc1s7p4" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Evlink Parking Evw2 Firmware Search vendor "Schneider-electric" for product "Evlink Parking Evw2 Firmware" | < r8_v3.4.0.1 Search vendor "Schneider-electric" for product "Evlink Parking Evw2 Firmware" and version " < r8_v3.4.0.1" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Evlink Parking Evw2 Search vendor "Schneider-electric" for product "Evlink Parking Evw2" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Evlink Parking Evf2 Firmware Search vendor "Schneider-electric" for product "Evlink Parking Evf2 Firmware" | < r8_v3.4.0.1 Search vendor "Schneider-electric" for product "Evlink Parking Evf2 Firmware" and version " < r8_v3.4.0.1" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Evlink Parking Evf2 Search vendor "Schneider-electric" for product "Evlink Parking Evf2" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Evlink Parking Ev.2 Firmware Search vendor "Schneider-electric" for product "Evlink Parking Ev.2 Firmware" | < r8_v3.4.0.1 Search vendor "Schneider-electric" for product "Evlink Parking Ev.2 Firmware" and version " < r8_v3.4.0.1" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Evlink Parking Ev.2 Search vendor "Schneider-electric" for product "Evlink Parking Ev.2" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Evlink Smart Wallbox Evb1a Firmware Search vendor "Schneider-electric" for product "Evlink Smart Wallbox Evb1a Firmware" | < r8_v3.4.0.1 Search vendor "Schneider-electric" for product "Evlink Smart Wallbox Evb1a Firmware" and version " < r8_v3.4.0.1" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Evlink Smart Wallbox Evb1a Search vendor "Schneider-electric" for product "Evlink Smart Wallbox Evb1a" | - | - |
Safe
|