← Back

CVE-2026-6866

nvd nist
Published: May 12, 2026Modified: Jun 24, 2026

JSON object

Loading...
8.2
Vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: cybersecurity@se.com (Secondary)

Description

CWE-1188 Initialization of a Resource with an Insecure Default vulnerability exists that could cause unauthorized disclosure of sensitive information when credentials revert to initial settings in rare circumstances, enabling unauthorized authentication using known credentials.

Affected (5)

Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 002.006.000
Running on/withPlatform Versions
Schneider Electric
Ecostruxure Panel Server Pas400
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 002.006.000
Running on/withPlatform Versions
Schneider Electric
Ecostruxure Panel Server Pas600
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 002.006.000
Running on/withPlatform Versions
Schneider Electric
Ecostruxure Panel Server Pas600v2
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 002.006.000
Running on/withPlatform Versions
Schneider Electric
Ecostruxure Panel Server Pas800
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 002.006.000
Running on/withPlatform Versions
Schneider Electric
Ecostruxure Panel Server Pas800v2
All versions

Timeline

No history available yet.