Schneider Electric EcoStruxure Cybersecurity Admin Expert是美国Schneider Electric公司开源的一款终端安全管理软件。 Schneider Electric EcoStruxure Cybersecurity Admin Expert 4.2.0及之前版本存在信任管理问题漏洞,该漏洞源于应用程序中存储凭据的处理和保护存在弱点,可能导致身份验证绕过和未经授权的凭据修改,进而导致管理设备被破解。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Schneider Electric | EcoStruxure™ Cybersecurity Admin Expert | v4.2.0 and prior |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Schneider Electric | EcoStruxure™ Cybersecurity Admin Expert | v4.2.0 and prior | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-0667 | 9.3 CRITICAL | Schneider Electric SCADAPack 47x 异常处理不当漏洞 |
| CVE-2026-12927 | 8.4 HIGH | Schneider Electric IGSS Definition 缓冲区错误漏洞 |
No comments yet