Schneider Electric
schneider-electric
771 CVEs • 1,745 products
Products (1,745)
Click to collapseToggle
Products (1,745)
Click to collapse
CVEs (771)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Schneider Electric 1Interactive Graphical Scada System Nov 21, 2024 Mar 23, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a remote unauthenticated attacker to read arbitrary files from...Show more |
1Schneider Electric 28140cpu65150 Firmware 140cpu65160 Firmware140cpu65160s Firmware+25 moreMay 28, 2026 Mar 23, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module 140NOE771x1 (Versions 7.0 and prior), Quantum processors with integrated Ethernet – 140CPU65xxxxx (a...Show more |
1Schneider Electric 1Ulti Zigbee Installation Toolkit Nov 21, 2024 Mar 23, 2020 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could cause execution of malicious code when a malicious file is put in the search path. |
1Schneider Electric 4Ecostruxure Control Expert Modicon M340 FirmwareModicon M580 Firmware+1 moreNov 21, 2024 Mar 23, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), reflective DLL, vulnerability exists in EcoStruxure Control Expert (all versions prior to 14.1 Hot Fix), Unity...Show more |
1Schneider Electric 1Pmepxm0100 Prosoft Configurator Nov 21, 2024 Mar 23, 2020 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PMEPXM0100 (H) module, which could cause the execution of untrusted code when using double click to ope...Show more |
1Schneider Electric 1Msx Configurator Nov 21, 2024 Jan 22, 2020 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 A CWE-427:Uncontrolled Search Path Element vulnerability exists in MSX Configurator (Software Version prior to V1.0.8.1), which could cause privilege escalation when injecting a malicious DLL. |
1Schneider Electric 29140cpu65150 Firmware 140cpu65160 Firmware140cpu65160s Firmware+26 moreMay 29, 2026 Jan 6, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) which could cause a D...Show more |
1Schneider Electric 29140cpu65150 Firmware 140cpu65160 Firmware140cpu65160s Firmware+26 moreMay 29, 2026 Jan 6, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) which could cause a D...Show more |
1Schneider Electric 23Ecostruxure Control Expert Modicon M340 Bmxp341000 FirmwareModicon M340 Bmxp342000 Firmware+20 moreNov 21, 2024 Jan 6, 2020 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 Incorrect Authorization vulnerability exists in EcoStruxure Control Expert (all versions prior to 14.1 Hot Fix), Unity Pro (all versions), Modicon M340 (all versions prior to V3.20) , and Modicon M580 (all versions prior...Show more |
A CWE-287: Improper Authentication vulnerability exists in a folder within EcoStruxure Geo SCADA Expert (ClearSCADA) -with initial releases before 1 January 2019- which could cause a low privilege user to delete or modif...Show more |
1Schneider Electric 29140cpu65150 Firmware 140cpu65160 Firmware140cpu65160s Firmware+26 moreMay 29, 2026 Jan 6, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) which could cause a D...Show more |
1Schneider Electric 11Andover Continuum 5720 Firmware Andover Continuum 5740 FirmwareAndover Continuum 9200 Firmware+8 moreNov 21, 2024 Nov 20, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A CWE-79: Failure to Preserve Web Page Structure vulnerability exists in Andover Continuum (models 9680, 5740 and 5720, bCX4040, bCX9640, 9900, 9940, 9924 and 9702) , which could enable a successful Cross-site Scripting...Show more |
1Schneider Electric 10140 Cpu6x Firmware 140 Noc 77101 Firmware140 Noc 78x00 Firmware+7 moreMay 28, 2026 Nov 20, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-200: Information Exposure vulnerability exists in Modicon Controllers (M340 CPUs, M340 communication modules, Premium CPUs, Premium communication modules, Quantum CPUs, Quantum communication modules - see security...Show more |
1Schneider Electric 23Modicon M340 Firmware Modicon M580 FirmwareTsxmcpc002m Firmware+20 moreNov 21, 2024 Oct 29, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the c...Show more |
1Schneider Electric 3Modicon Bmenoc 0311 Firmware Modicon Bmenoc 0321 FirmwareModicon M580 FirmwareNov 21, 2024 Oct 29, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-200: Information Exposure vulnerability exists in Modicon M580, Modicon BMENOC 0311, and Modicon BMENOC 0321, which could cause the disclosure of sensitive information when reading specific registers with the REST...Show more |
1Schneider Electric 3Modicon Bmenoc 0311 Firmware Modicon Bmenoc 0321 FirmwareModicon M580 FirmwareNov 21, 2024 Oct 29, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-200: Information Exposure vulnerability exists in Modicon M580, Modicon BMENOC 0311, and Modicon BMENOC 0321, which could cause the disclosure of sensitive information when using specific Modbus services provided b...Show more |
1Schneider Electric 3Modicon Bmenoc 0311 Firmware Modicon Bmenoc 0321 FirmwareModicon M580 FirmwareNov 21, 2024 Oct 29, 2019 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 CPU (BMEx58*) and Modicon M580 communication module (BMENOC0311, BMENOC0321) (see notification for version info), which could ca...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreNov 21, 2024 Oct 29, 2019 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the FT...Show more |
1Schneider Electric 4Modicon 140cra Firmware Modicon Bmxcra FirmwareModicon M340 Firmware+1 moreNov 21, 2024 Oct 29, 2019 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause information disclosure when usin...Show more |
1Schneider Electric 23Modicon M340 Firmware Modicon M580 FirmwareTsxmcpc002m Firmware+20 moreNov 21, 2024 Oct 29, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information wh...Show more |