Schneider Electric
schneider-electric
771 CVEs • 1,745 products
Products (1,745)
Click to collapseToggle
Products (1,745)
Click to collapse
CVEs (771)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Schneider Electric 1Pro Face Gp Pro Ex May 13, 2026 Sep 26, 2017 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A vulnerability exists in Schneider Electric's Pro-Face GP Pro EX version 4.07.000 that allows an attacker to execute arbitrary code. Malicious code installation requires an access to the computer. By placing a specific...Show more |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An information disclosure vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system response to error provides more information than should be available to an una...Show more |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 A vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system accepts reboot in session from unauthenticated users, supporting a denial of service condition. |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 An improper access control vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an improper handling of the system configuration can allow an attacker to execute arbitr...Show more |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the web service contains a hidden system account with a hardcoded password. An attacker can use this information...Show more |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 An authentication bypass vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system contains a hard-coded valid session. An attacker can use that session ID as par...Show more |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A path traversal information disclosure vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can execute arbitrary code and exfiltrate files. |
1Schneider Electric 1U.motion Builder May 13, 2026 Sep 26, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A SQL injection vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can use calls to various paths allowing performance of arbitrary SQL comman...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 5.5 MEDIUM· v3 5.2 MEDIUM· v2 A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the ability to escape out of remote...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the use of outdated cipher suites a...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the ability to specify Arbitrary Se...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A cross-site request forgery vulnerability exists on the Secure Gateway component of Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere...Show more |
1Schneider Electric 1Wonderware Archestra Logger May 13, 2026 Jul 7, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A Null Pointer Dereference issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The null pointer dereference vulnerability could allow an attacker to crash the logge...Show more |
1Schneider Electric 1Wonderware Archestra Logger May 13, 2026 Jul 7, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A Stack-Based Buffer Overflow issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The stack-based buffer overflow vulnerability has been identified, which may allow...Show more |
1Schneider Electric 1Wonderware Archestra Logger May 13, 2026 Jul 7, 2017 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 An Uncontrolled Resource Consumption issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The uncontrolled resource consumption vulnerability could allow an attacker...Show more |
1Schneider Electric 1Modbus Firmware Jun 4, 2026 Jun 30, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An authentication bypass by capture-replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker...Show more |
1Schneider Electric 1Modbus Firmware May 13, 2026 Jun 30, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol. The Modicon Modbus protocol has a session-related weakness making it susceptible to brute-force attacks. |
1Schneider Electric 3Modicon M221 Firmware Modicon M241 FirmwareModicon M251 FirmwareJun 4, 2026 Jun 30, 2017 N/A· v4 6.5 MEDIUM· v3 6.4 MEDIUM· v2 A predictable value range from previous values issue was discovered in Schneider Electric Modicon PLCs Modicon M221, firmware versions prior to Version 1.5.0.0, Modicon M241, firmware versions prior to Version 4.0.5.11,...Show more |
1Schneider Electric 2Modicon M241 Firmware Modicon M251 FirmwareMay 13, 2026 Jun 30, 2017 N/A· v4 9.8 CRITICAL· v3 5.0 MEDIUM· v2 An Insufficiently Protected Credentials issue was discovered in Schneider Electric Modicon PLCs Modicon M241, all firmware versions, and Modicon M251, all firmware versions. Log-in credentials are sent over the network w...Show more |
1Schneider Electric 2Modicon M241 Firmware Modicon M251 FirmwareMay 13, 2026 Jun 30, 2017 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 A Use of Insufficiently Random Values issue was discovered in Schneider Electric Modicon PLCs Modicon M241, firmware versions prior to Version 4.0.5.11, and Modicon M251, firmware versions prior to Version 4.0.5.11. The...Show more |