CVE-2022-30232: Schneider Electric Powerlogic Ion Setup Firmware

High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.

A CWE-20: Improper Input Validation vulnerability exists that could cause potential remote code execution when an attacker is able to intercept and modify a request on the same network or has configuration access to an ION device on the network. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)

Affected products

  • Schneider Electric Powerlogic Ion Setup Firmware: before 3.2.22096.01 (fixed in 3.2.22096.01)

Published 2022-06-02. Last modified 2026-06-17.