CVE-2020-28218: Schneider Electric Easergy t300 Firmware

Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.

A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists in Easergy T300 (firmware 2.7 and older), that would allow an attacker to trick a user into initiating an unintended action.

Affected products

Published 2020-12-11. Last modified 2026-06-17.