A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts Telnet network traffic between a user and the device.

Project Subscriptions

Vendors Products
Schneider-electric Subscribe
Powerlogic Ion7300 Subscribe
Powerlogic Ion7300 Firmware Subscribe
Powerlogic Ion7400 Subscribe
Powerlogic Ion7400 Firmware Subscribe
Powerlogic Ion7650 Subscribe
Powerlogic Ion7650 Firmware Subscribe
Powerlogic Ion7700 Subscribe
Powerlogic Ion7700 Firmware Subscribe
Powerlogic Ion8300 Subscribe
Powerlogic Ion8300 Firmware Subscribe
Powerlogic Ion8400 Subscribe
Powerlogic Ion8400 Firmware Subscribe
Powerlogic Ion8500 Subscribe
Powerlogic Ion8500 Firmware Subscribe
Powerlogic Ion8600 Subscribe
Powerlogic Ion8600 Firmware Subscribe
Powerlogic Ion8650 Subscribe
Powerlogic Ion8650 Firmware Subscribe
Powerlogic Ion8800 Subscribe
Powerlogic Ion8800 Firmware Subscribe
Powerlogic Ion9000 Subscribe
Powerlogic Ion9000 Firmware Subscribe
Powerlogic Pm8000 Subscribe
Powerlogic Pm8000 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-9837 A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts Telnet network traffic between a user and the device.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 29 May 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2026-05-29T13:31:40.934Z

Reserved: 2021-01-06T00:00:00.000Z

Link: CVE-2021-22702

cve-icon Vulnrichment

Updated: 2024-08-03T18:51:07.456Z

cve-icon NVD

Status : Modified

Published: 2021-02-19T16:15:13.077

Modified: 2026-05-29T14:16:22.757

Link: CVE-2021-22702

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses