SEVD-2023-346-01
Schneider Electric is aware of multiple vulnerabilities in its Trio Licensed and License-Free Data Radio products. The Trio Licensed Radio products are designed to provide complete, versatile, and high availability system solutions for long range wireless data communications in SCADA and remote telemetry applications. The Trio License-Free Radio products are a range of frequency-hopping Ethernet and Serial Data Radios operating in the license-free 900Mhz and 2.4 Ghz band and designed with versatility and flexibility in mind. Failure to apply the remediations and mitigations provided below may risk disclosure of information, or potential installation of malicious code.
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schneider Electric Trio Q-Series Ethernet Data Radio All Versions | ||
| Schneider Electric Trio E-Series Ethernet Data Radio All Versions | ||
| Schneider Electric Trio J-Series Ethernet Data Radio version 3.8.3 | ||
| Schneider Electric Trio J-Series Ethernet Data Radio versions prior to 3.8.3 | ||
| Schneider Electric Trio Q-Series Ethernet Data Radio version 2.7.0 | ||
| Schneider Electric Trio Q-Series prior to V2.7.0 | ||
| Schneider Electric Trio J-Series Ethernet Data Radio All Versions |
Timeline
- Dec 12, 2023 CVE Published
- Apr 9, 2024 CVE Updated
References
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-346-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-346-01.pdf advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-346-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=sevd-2023-346-01.json advisory
- https://www.se.com/us/en/download/document/7EN52-0390/ url
- https://www.se.com/us/en/download/document/TrioQFirmware/ fix
- https://www.se.com/us/en/product-range/61420-trio-licensefree-radios#software-and-firmware fix
- https://download.schneider-electric.com/files?p_Doc_Ref=Trio+Q+Data+Radio+User+Manual&p_enDocType=User+guide&p_File_Name=Trio+Q+Data+Radio+User+Manual.pdf fix