Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Schneider Electric — Vulnerabilities & Security Advisories 311

Browse all 311 CVE security advisories affecting Schneider Electric. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Schneider Electric operates as a global specialist in energy management and industrial automation, providing critical infrastructure solutions for data centers, buildings, and manufacturing facilities. Its extensive product portfolio, including programmable logic controllers and supervisory control and data acquisition systems, has historically been associated with a significant volume of vulnerabilities, currently totaling 287 Common Vulnerabilities and Exposures. These security flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from legacy protocols or default configurations in industrial control interfaces. While the company has implemented various security patches and guidelines, the sheer scale of its connected ecosystem presents persistent attack surfaces. Notable incidents have highlighted risks in unpatched firmware and weak authentication mechanisms within its EcoStruxure platform, underscoring the critical need for rigorous network segmentation and continuous monitoring to mitigate potential disruptions to essential operational technology environments.

CVE ID Title CVSS Severity Published
CVE-2026-3869 Schneider Electric Modicon M580 授权问题漏洞 — Modicon M580 CWE-303 9.2 Critical 2026-09-11
CVE-2026-81861 Schneider Electric SCADAPack 47x 信任管理问题漏洞 — SCADAPack 47x CWE-522 5.9 Medium 2026-09-11
CVE-2026-77120 Schneider Electric PowerLogic T300 命令注入漏洞 — PowerLogic T300 CWE-78 8.7 High 2026-09-09
CVE-2026-19233 Schneider Electric EcoStruxure IT Data Center Expert 服务端请求伪造漏洞 — EcoStruxure™ IT Data Center Expert (Formerly known as StruxureWare Data Center Expert) CWE-918 8.6 High 2026-09-09
CVE-2026-8044 Schneider Electric EcoStruxure IT Data Center Expert 命令注入漏洞 — EcoStruxure™ IT Data Center Expert (Formerly known as StruxureWare Data Center Expert) CWE-88 8.6 High 2026-09-09
CVE-2026-13348 Schneider Electric PowerChute Serial Shutdown 授权问题漏洞 — PowerChute™ Serial Shutdown CWE-307 6.9 Medium 2026-09-01
CVE-2026-13337 Schneider Electric NetBotz SQL注入漏洞 — NetBotz 5 - 750/755 CWE-564 5.1 Medium 2026-09-01
CVE-2026-13336 Schneider Electric NetBotz 命令注入漏洞 — NetBotz 5 - 750/755 CWE-78 7.3 High 2026-09-01
CVE-2024-10085 Schneider Electric EcoStruxure OPC UA Server Expert 资源管理错误漏洞 — EcoStruxure™ OPC UA Server Expert CWE-770 8.2 High 2026-09-01
CVE-2026-12927 Schneider Electric IGSS Definition 缓冲区错误漏洞 — IGSS Definition (Def.exe) CWE-787 8.4 High 2026-07-29
CVE-2026-0667 Schneider Electric SCADAPack 47x 异常处理不当漏洞 — SCADAPack 47x CWE-754 9.3 Critical 2026-07-29
CVE-2026-14354 Schneider Electric EcoStruxure Cybersecurity Admin Expert 信任管理问题漏洞 — EcoStruxure™ Cybersecurity Admin Expert CWE-522 8.7 High 2026-07-29
CVE-2026-9718 Schneider Electric PowerLogic™ P7 异常处理不当漏洞 — PowerLogic™ P7 CWE-617 - - 2026-06-25
CVE-2026-9717 Schneider Electric PowerLogic™ P7 命令注入漏洞 — PowerLogic™ P7 CWE-78 - - 2026-06-25
CVE-2026-9716 Schneider Electric PowerLogic™ P7 异常处理不当漏洞 — PowerLogic™ P7 CWE-476 - - 2026-06-25
CVE-2026-9651 Schneider Electric EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller 权限许可和访问控制问题漏洞 — EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller CWE-732 - - 2026-06-25
CVE-2026-9650 Schneider Electric EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller 信任管理问题漏洞 — EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller CWE-522 - - 2026-06-25
CVE-2026-8045 Schneider Electric Data Center Expert 代码问题漏洞 — EcoStruxure™ IT Data Center Expert CWE-611 - - 2026-06-09
CVE-2026-6332 Clear Text Storage of Sensitive Information on EcoStruxure™ Machine Expert HVAC — Ecostruxure™ Machine Expert HVAC CWE-312 - - 2026-05-14
CVE-2026-6866 Initialization of a Resource with an Insecure Default vulnerability on EcoStruxure™ Panel Server — EcoStruxure™ Panel Server CWE-1188 - - 2026-05-12
CVE-2026-6865 Improper Limitation of a Pathname to a Restricted Directory Vulnerability on Multiple Products — EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller CWE-22 - - 2026-05-12
CVE-2026-4827 Insufficient Entropy vulnerability on Multiple Products — Easergy MiCOM C264 CWE-331 - - 2026-05-12
CVE-2026-2401 Schneider Electric PowerChute Serial Shutdown 日志信息泄露漏洞 — PowerChute™ Serial Shutdown CWE-532 6.5 - 2026-04-14
CVE-2026-2400 Schneider Electric PowerChute Serial Shutdown 注入漏洞 — PowerChute™ Serial Shutdown CWE-93 4.5 - 2026-04-14
CVE-2026-2403 Schneider Electric PowerChute Serial Shutdown 安全漏洞 — PowerChute™ Serial Shutdown CWE-1284 2.7 - 2026-04-14
CVE-2026-2405 Schneider Electric PowerChute Serial Shutdown 资源管理错误漏洞 — PowerChute™ Serial Shutdown CWE-400 6.5 - 2026-04-14
CVE-2026-2402 Schneider Electric PowerChute Serial Shutdown 安全漏洞 — PowerChute™ Serial Shutdown CWE-307 9.8 - 2026-04-14
CVE-2026-2404 Schneider Electric PowerChute Serial Shutdown 安全漏洞 — PowerChute™ Serial Shutdown CWE-116 7.5 - 2026-04-14
CVE-2026-2399 Schneider Electric PowerChute Serial Shutdown 路径遍历漏洞 — PowerChute™ Serial Shutdown CWE-22 6.5 - 2026-04-14
CVE-2026-4832 Schneider Electric多款产品 信任管理问题漏洞 — Easergy MiCOM P14x CWE-798 7.5 - 2026-04-14

This page lists every published CVE security advisory associated with Schneider Electric. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.