Schneider Electric
schneider-electric
783 CVEs • 1,762 products
Products (1,762)
Click to collapseToggle
Products (1,762)
Click to collapse
CVEs (783)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 5.5 MEDIUM· v3 5.2 MEDIUM· v2 A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the ability to escape out of remote...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the use of outdated cipher suites a...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the ability to specify Arbitrary Se...Show more |
1Schneider Electric 2Citect Anywhere Powerscada AnywhereMay 13, 2026 Sep 26, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A cross-site request forgery vulnerability exists on the Secure Gateway component of Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere...Show more |
1Schneider Electric 1Wonderware Archestra Logger May 13, 2026 Jul 7, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A Null Pointer Dereference issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The null pointer dereference vulnerability could allow an attacker to crash the logge...Show more |
1Schneider Electric 1Wonderware Archestra Logger May 13, 2026 Jul 7, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A Stack-Based Buffer Overflow issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The stack-based buffer overflow vulnerability has been identified, which may allow...Show more |
1Schneider Electric 1Wonderware Archestra Logger May 13, 2026 Jul 7, 2017 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 An Uncontrolled Resource Consumption issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The uncontrolled resource consumption vulnerability could allow an attacker...Show more |
1Schneider Electric 1Modbus Firmware Jun 4, 2026 Jun 30, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An authentication bypass by capture-replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker...Show more |
1Schneider Electric 1Modbus Firmware May 13, 2026 Jun 30, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol. The Modicon Modbus protocol has a session-related weakness making it susceptible to brute-force attacks. |
1Schneider Electric 3Modicon M221 Firmware Modicon M241 FirmwareModicon M251 FirmwareJun 4, 2026 Jun 30, 2017 N/A· v4 6.5 MEDIUM· v3 6.4 MEDIUM· v2 A predictable value range from previous values issue was discovered in Schneider Electric Modicon PLCs Modicon M221, firmware versions prior to Version 1.5.0.0, Modicon M241, firmware versions prior to Version 4.0.5.11,...Show more |
1Schneider Electric 2Modicon M241 Firmware Modicon M251 FirmwareMay 13, 2026 Jun 30, 2017 N/A· v4 9.8 CRITICAL· v3 5.0 MEDIUM· v2 An Insufficiently Protected Credentials issue was discovered in Schneider Electric Modicon PLCs Modicon M241, all firmware versions, and Modicon M251, all firmware versions. Log-in credentials are sent over the network w...Show more |
1Schneider Electric 2Modicon M241 Firmware Modicon M251 FirmwareMay 13, 2026 Jun 30, 2017 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 A Use of Insufficiently Random Values issue was discovered in Schneider Electric Modicon PLCs Modicon M241, firmware versions prior to Version 4.0.5.11, and Modicon M251, firmware versions prior to Version 4.0.5.11. The...Show more |
1Schneider Electric 15Bmxnoc0401 Firmware Bmxnoe0100 FirmwareBmxnoe0110 Firmware+12 moreMay 13, 2026 Jun 30, 2017 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 A Resource Exhaustion issue was discovered in Schneider Electric Modicon M340 PLC BMXNOC0401, BMXNOE0100, BMXNOE0110, BMXNOE0110H, BMXNOR0200H, BMXP341000, BMXP342000, BMXP3420102, BMXP3420102CL, BMXP342020, BMXP342020H,...Show more |
A DLL Hijacking vulnerability in the programming software in Schneider Electric's SoMachine HVAC v2.1.0 allows a remote attacker to execute arbitrary code on the targeted system. The vulnerability exists due to the impro...Show more |
1Schneider Electric 1Somachine Hvac May 13, 2026 Jun 7, 2017 N/A· v4 7.3 HIGH· v3 4.6 MEDIUM· v2 A buffer overflow vulnerability exists in Programming Software executable AlTracePrint.exe, in Schneider Electric's SoMachine HVAC v2.1.0 for Modicon M171/M172 Controller. |
1Schneider Electric 1Wonderware Indusoft Web Studio May 13, 2026 May 19, 2017 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 An Incorrect Default Permissions issue was discovered in Schneider Electric Wonderware InduSoft Web Studio v8.0 Patch 3 and prior versions. Upon installation, Wonderware InduSoft Web Studio creates a new directory and tw...Show more |
1Schneider Electric 1Wonderware Historian Client May 13, 2026 May 19, 2017 N/A· v4 6.6 MEDIUM· v3 3.3 LOW· v2 An Improper XML Parser Configuration issue was discovered in Schneider Electric Wonderware Historian Client 2014 R2 SP1 and prior. An improperly restricted XML parser (with improper restriction of XML external entity ref...Show more |
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vulnerability causes the software to halt o...Show more |
1Schneider Electric 1Struxureware Data Center Expert May 13, 2026 Apr 30, 2017 N/A· v4 6.8 MEDIUM· v3 4.0 MEDIUM· v2 Schneider Electric StruxureWare Data Center Expert before 7.4.0 uses cleartext RAM storage for passwords, which might allow remote attackers to obtain sensitive information via unspecified vectors. |
1Schneider Electric 1Homelynk Controller Lss100100 Firmware May 13, 2026 Apr 11, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A Command Injection vulnerability in Schneider Electric homeLYnk Controller exists in all versions before 1.5.0. |