Schneider Electric
schneider-electric
771 CVEs • 1,745 products
Products (1,745)
Click to collapseToggle
Products (1,745)
Click to collapse
CVEs (771)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Schneider Electric 15Bmxnoc0401 Firmware Bmxnoe0100 FirmwareBmxnoe0110 Firmware+12 moreMay 13, 2026 Jun 30, 2017 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 A Resource Exhaustion issue was discovered in Schneider Electric Modicon M340 PLC BMXNOC0401, BMXNOE0100, BMXNOE0110, BMXNOE0110H, BMXNOR0200H, BMXP341000, BMXP342000, BMXP3420102, BMXP3420102CL, BMXP342020, BMXP342020H,...Show more |
A DLL Hijacking vulnerability in the programming software in Schneider Electric's SoMachine HVAC v2.1.0 allows a remote attacker to execute arbitrary code on the targeted system. The vulnerability exists due to the impro...Show more |
1Schneider Electric 1Somachine Hvac May 13, 2026 Jun 7, 2017 N/A· v4 7.3 HIGH· v3 4.6 MEDIUM· v2 A buffer overflow vulnerability exists in Programming Software executable AlTracePrint.exe, in Schneider Electric's SoMachine HVAC v2.1.0 for Modicon M171/M172 Controller. |
1Schneider Electric 1Wonderware Indusoft Web Studio May 13, 2026 May 19, 2017 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 An Incorrect Default Permissions issue was discovered in Schneider Electric Wonderware InduSoft Web Studio v8.0 Patch 3 and prior versions. Upon installation, Wonderware InduSoft Web Studio creates a new directory and tw...Show more |
1Schneider Electric 1Wonderware Historian Client May 13, 2026 May 19, 2017 N/A· v4 6.6 MEDIUM· v3 3.3 LOW· v2 An Improper XML Parser Configuration issue was discovered in Schneider Electric Wonderware Historian Client 2014 R2 SP1 and prior. An improperly restricted XML parser (with improper restriction of XML external entity ref...Show more |
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vulnerability causes the software to halt o...Show more |
1Schneider Electric 1Struxureware Data Center Expert May 13, 2026 Apr 30, 2017 N/A· v4 6.8 MEDIUM· v3 4.0 MEDIUM· v2 Schneider Electric StruxureWare Data Center Expert before 7.4.0 uses cleartext RAM storage for passwords, which might allow remote attackers to obtain sensitive information via unspecified vectors. |
1Schneider Electric 1Homelynk Controller Lss100100 Firmware May 13, 2026 Apr 11, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A Command Injection vulnerability in Schneider Electric homeLYnk Controller exists in all versions before 1.5.0. |
1Schneider Electric 1Interactive Graphical Scada System May 13, 2026 Apr 7, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A DLL Hijacking issue was discovered in Schneider Electric Interactive Graphical SCADA System (IGSS) Software, Version 12 and previous versions. The software will execute a malicious file if it is named the same as a leg...Show more |
1Schneider Electric 1Conext Combox 865 1058 Firmware May 13, 2026 Apr 7, 2017 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An issue was discovered in Schneider Electric Conext ComBox, model 865-1058, all firmware versions prior to V3.03 BN 830. A series of rapid requests to the device may cause it to reboot. |
1Schneider Electric 1Modicon Tm221ce16r Firmware May 29, 2026 Apr 6, 2017 N/A· v4 9.8 CRITICAL· v3 5.0 MEDIUM· v2 Schneider Electric Modicon TM221CE16R 1.3.3.3 devices allow remote attackers to discover the application-protection password via a \x00\x01\x00\x00\x00\x05\x01\x5a\x00\x03\x00 request to the Modbus port (502/tcp). Subseq...Show more |
1Schneider Electric 2Modicon Tm221ce16r Firmware SomachineMay 29, 2026 Apr 6, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Schneider Electric SoMachine Basic 1.4 SP1 and Schneider Electric Modicon TM221CE16R 1.3.3.3 devices have a hardcoded-key vulnerability. The Project Protection feature is used to prevent unauthorized users from opening a...Show more |
1Schneider Electric 3Tableau Desktop Tableau ServerWonderware IntelligenceMay 13, 2026 Mar 8, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 An issue was discovered in Schneider Electric Tableau Server/Desktop Versions 7.0 to 10.1.3 in Wonderware Intelligence Versions 2014R3 and prior. These versions contain a system account that is installed by default. The...Show more |
1Schneider Electric 1Homelynk Controller Lss100100 Firmware May 13, 2026 Feb 13, 2017 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 An issue was discovered in Schneider Electric homeLYnk Controller, LSS100100, all versions prior to V1.5.0. The homeLYnk controller is susceptible to a cross-site scripting attack. User inputs can be manipulated to cause...Show more |
1Schneider Electric 1Wonderware Historian May 13, 2026 Feb 13, 2017 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 An issue was discovered in Schneider Electric Wonderware Historian 2014 R2 SP1 P01 and earlier. Wonderware Historian creates logins with default passwords, which can allow a malicious entity to compromise Historian datab...Show more |
1Schneider Electric 8Magelis Gto Advanced Optimum Panel Firmware Magelis Gtu Universal Panel FirmwareMagelis Sto5 Small Panel Firmware+5 moreMay 13, 2026 Feb 13, 2017 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU Universal Panel, all versions, Magelis STO5xx and STU Small panels, all versions, Magelis XBT GH Ad...Show more |
1Schneider Electric 8Magelis Gto Advanced Optimum Panel Firmware Magelis Gtu Universal Panel FirmwareMagelis Sto5 Small Panel Firmware+5 moreMay 13, 2026 Feb 13, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU Universal Panel, all versions, Magelis STO5xx and STU Small panels, all versions, Magelis XBT GH Ad...Show more |
An issue was discovered in Schneider Electric Unity PRO prior to V11.1. Unity projects can be compiled as x86 instructions and loaded onto the PLC Simulator delivered with Unity PRO. These x86 instructions are subsequent...Show more |
1Schneider Electric 1Connexium Firmware May 13, 2026 Feb 13, 2017 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Schneider Electric ConneXium firewalls TCSEFEC23F3F20 all versions, TCSEFEC23F3F21 all versions, TCSEFEC23FCF20 all versions, TCSEFEC23FCF21 all versions, and TCSEFEC2CF3F20 all versions. A sta...Show more |
1Schneider Electric 1Powerlogic Pm8ecc Firmware May 13, 2026 Feb 13, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credentials allow access to the device. |