Schneider Electric
schneider-electric
771 CVEs • 1,745 products
Products (1,745)
Click to collapseToggle
Products (1,745)
Click to collapse
CVEs (771)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Schneider Electric 1C Bus Toolkit Nov 21, 2024 Apr 13, 2021 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when processing config files. |
1Schneider Electric 1C Bus Toolkit Nov 21, 2024 Apr 13, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could allow remote code execution when an unprivileged user modifies a file. Affected Product: C-Bus Toolkit (V1.15.9 and prior) |
1Schneider Electric 3Powerlogic Ion7400 Firmware Powerlogic Ion9000 FirmwarePowerlogic Pm8000 FirmwareNov 21, 2024 Mar 11, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION7400, PM8000 and ION9000 (All versions prior to V3.0.0), which could cause the meter to reboot or al...Show more |
1Schneider Electric 11Ion7650 Firmware Powerlogic Ion7300 FirmwarePowerlogic Ion7550 Firmware+8 moreMay 29, 2026 Mar 11, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION8650, ION8800, ION7650, ION7700/73xx, and ION83xx/84xx/85xx/8600 (see security notifcation for affec...Show more |
1Schneider Electric 1Interactive Graphical Scada System Nov 21, 2024 Mar 11, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A CWE-119:Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Interactive Graphical SCADA System (IGSS) Definition (Def.exe) V15.0.0.21041 and prior, which could result in arbi...Show more |
1Schneider Electric 1Interactive Graphical Scada System Nov 21, 2024 Mar 11, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A CWE-119:Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Interactive Graphical SCADA System (IGSS) Definition (Def.exe) V15.0.0.21041 and prior, which could result in arbi...Show more |
1Schneider Electric 1Interactive Graphical Scada System Nov 21, 2024 Mar 11, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A CWE-119:Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Interactive Graphical SCADA System (IGSS) Definition (Def.exe) V15.0.0.21041 and prior, which could cause remote c...Show more |
1Schneider Electric 1Interactive Graphical Scada System Nov 21, 2024 Mar 11, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A CWE-119:Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Interactive Graphical SCADA System (IGSS) Definition (Def.exe) V15.0.0.21041 and prior, which could result in loss...Show more |
1Schneider Electric 10Powerlogic Ion7400 Firmware Powerlogic Ion7650 FirmwarePowerlogic Ion8300 Firmware+7 moreMay 29, 2026 Feb 19, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that c...Show more |
1Schneider Electric 12Powerlogic Ion7300 Firmware Powerlogic Ion7400 FirmwarePowerlogic Ion7650 Firmware+9 moreMay 29, 2026 Feb 19, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected ver...Show more |
1Schneider Electric 10Powerlogic Ion7400 Firmware Powerlogic Ion7650 FirmwarePowerlogic Ion8300 Firmware+7 moreMay 29, 2026 Feb 19, 2021 N/A· v4 4.5 MEDIUM· v3 3.5 LOW· v2 A CWE-352: Cross-Site Request Forgery vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause a user to...Show more |
1Schneider Electric 1Ecostruxure Power Build Rapsody Nov 21, 2024 Jan 26, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior) that could allow a stack-based buffer overflow to occur which could re...Show more |
1Schneider Electric 1Ecostruxure Power Build Rapsody Nov 21, 2024 Jan 26, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior) that could allow a use-after-free condition which could result in remo...Show more |
1Schneider Electric 2Ecostruxure Operator Terminal Expert Pro Face BlueNov 21, 2024 Jan 26, 2021 N/A· v4 9.8 CRITICAL· v3 9.3 HIGH· v2 A CWE-20: Improper Input Validation vulnerability exists in EcoStruxure™ Operator Terminal Expert and Pro-face BLUE (version details in the notification) that could cause arbitrary code execution when the Ethernet Downlo...Show more |
1Schneider Electric 2Ecostruxure Control Expert Unity ProNov 21, 2024 Dec 11, 2020 N/A· v4 8.6 HIGH· v3 6.8 MEDIUM· v2 A CWE-123: Write-what-where Condition vulnerability exists in EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions), that could cause a crash of the software...Show more |
1Schneider Electric 19140cpu65150 Firmware 140noc78000 Firmware140noc78100 Firmware+16 moreMay 28, 2026 Dec 11, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see security...Show more |
1Schneider Electric 16Modicon M340 Bmxp341000 Firmware Modicon M340 Bmxp342000 FirmwareModicon M340 Bmxp3420102 Firmware+13 moreNov 21, 2024 Dec 11, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications for affected versions),...Show more |
1Schneider Electric 20140cpu65150 Firmware Modicon M340 Bmxp341000 FirmwareModicon M340 Bmxp342000 Firmware+17 moreNov 21, 2024 Dec 11, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications for affected versions),...Show more |
1Schneider Electric 20140cpu65150 Firmware 140noc77101 Firmware140noc78000 Firmware+17 moreNov 21, 2024 Dec 11, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A CWE-425: Direct Request ('Forced Browsing') vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see security notification for...Show more |
1Schneider Electric 23140cpu65150 Firmware 140cpu65160 Firmware140noc77101 Firmware+20 moreNov 21, 2024 Dec 11, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A CWE-306: Missing Authentication for Critical Function vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see security notific...Show more |