Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Schneider Electric — Vulnerabilities & Security Advisories 311

Browse all 311 CVE security advisories affecting Schneider Electric. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Schneider Electric operates as a global specialist in energy management and industrial automation, providing critical infrastructure solutions for data centers, buildings, and manufacturing facilities. Its extensive product portfolio, including programmable logic controllers and supervisory control and data acquisition systems, has historically been associated with a significant volume of vulnerabilities, currently totaling 287 Common Vulnerabilities and Exposures. These security flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from legacy protocols or default configurations in industrial control interfaces. While the company has implemented various security patches and guidelines, the sheer scale of its connected ecosystem presents persistent attack surfaces. Notable incidents have highlighted risks in unpatched firmware and weak authentication mechanisms within its EcoStruxure platform, underscoring the critical need for rigorous network segmentation and continuous monitoring to mitigate potential disruptions to essential operational technology environments.

CVE ID Title CVSS Severity Published
CVE-2023-5629 Schneider Electric Trio Q-Series Ethernet Data Radio 输入验证错误漏洞 — Trio Q-Series Ethernet Data Radio CWE-601 8.2 High 2023-12-14
CVE-2023-6032 Schneider Electric Galaxy VS和Schneider Electric Galaxy VL 安全漏洞 — Galaxy VS CWE-22 5.3 Medium 2023-11-15
CVE-2023-5987 Schneider Electric EcoStruxure Power Monitoring Expert 安全漏洞 — EcoStruxure Power Monitoring Expert (PME) CWE-79 6.1 Medium 2023-11-15
CVE-2023-5986 Schneider Electric EcoStruxure Power Monitoring Expert 安全漏洞 — EcoStruxure Power Monitoring Expert (PME) CWE-601 8.2 High 2023-11-15
CVE-2023-5985 Schneider Electric ION8650和ION8800 安全漏洞 — ION8650 CWE-79 4.8 Medium 2023-11-15
CVE-2023-5984 Schneider Electric ION8650和ION8800 安全漏洞 — ION8650 CWE-494 7.2 High 2023-11-15
CVE-2023-5391 Schneider Electric EcoStruxure Power Monitoring Expert 代码问题漏洞 — EcoStruxure Power Monitoring Expert CWE-502 9.8 Critical 2023-10-04
CVE-2023-5399 Schneider Electric C-Bus Toolkit 路径遍历漏洞 — C-Bus Toolkit CWE-22 9.8 Critical 2023-10-04
CVE-2023-5402 Schneider Electric SpaceLogic C-Bus Home Controller 安全漏洞 — C-Bus Toolkit CWE-269 9.8 Critical 2023-10-04
CVE-2023-4516 Schneider Electric IGSS 访问控制错误漏洞 — IGSS Update Service (IGSSupdateservice.exe) CWE-306 7.8 High 2023-09-14
CVE-2023-3953 Schneider Electric GP-Pro EX 缓冲区错误漏洞 — GP-Pro EX WinGP for iPC CWE-119 5.3 Medium 2023-08-09
CVE-2023-29414 Schneider Electric Accutech Manager 安全漏洞 — Accutech Manager CWE-120 7.8 High 2023-07-12
CVE-2023-37200 Schneider Electric EcoStruxure OPC UA Server Expert 代码问题漏洞 — EcoStruxure OPC UA Server Expert CWE-611 5.5 Medium 2023-07-12
CVE-2023-37199 Schneider Electric StruxureWare Data Center Expert 代码注入漏洞 — StruxureWare Data Center Expert CWE-94 6.8 Medium 2023-07-12
CVE-2023-37198 Schneider Electric StruxureWare Data Center Expert 代码注入漏洞 — StruxureWare Data Center Expert CWE-94 6.8 Medium 2023-07-12
CVE-2023-37197 Schneider Electric StruxureWare Data Center Expert SQL注入漏洞 — StruxureWare Data Center Expert CWE-89 8.8 High 2023-07-12
CVE-2023-37196 Schneider Electric StruxureWare Data Center Expert SQL注入漏洞 — StruxureWare Data Center Expert CWE-89 8.8 High 2023-07-12
CVE-2023-2570 Schneider Electric EcoStruxure Foxboro DCS 输入验证错误漏洞 — EcoStruxure Foxboro DCS Control Core Services CWE-129 7.0 High 2023-06-14
CVE-2023-2569 Schneider Electric EcoStruxure Foxboro DCS 缓冲区错误漏洞 — EcoStruxure Foxboro DCS Control Core Services CWE-787 7.8 High 2023-06-14
CVE-2023-3001 Schneider Electric IGSS 代码问题漏洞 — IGSS Dashboard (DashBoard.exe) CWE-502 7.8 High 2023-06-14
CVE-2023-1049 Schneider Electric EcoStruxure Operator Terminal Expert 代码注入漏洞 — EcoStruxure™ Operator Terminal Expert CWE-94 7.8 High 2023-06-14
CVE-2022-46680 Schneider Electric PowerLogic 安全漏洞 — PowerLogic ION9000 CWE-319 8.8 High 2023-05-22
CVE-2023-2161 Schneider Electric OPC Factory Server 代码问题漏洞 — OPC Factory Server (OFS) CWE-611 5.0 Medium 2023-05-16
CVE-2023-25620 Schneider Electric Modicon M580 代码问题漏洞 — Modicon M340 CPU (part numbers BMXP34*) CWE-754 6.5 Medium 2023-04-19
CVE-2023-25619 Schneider Electric Modbus Serial Driver 代码问题漏洞 — Modicon M340 CPU (part numbers BMXP34*) CWE-754 7.5 High 2023-04-19
CVE-2023-28004 Schneider Electric PowerLogic 输入验证错误漏洞 — PowerLogic HDPM6000 CWE-129 9.8 Critical 2023-04-18
CVE-2023-29410 Schneider Electric Conext Gateway 输入验证错误漏洞 — InsightHome CWE-20 7.2 High 2023-04-18
CVE-2023-29413 Schneider Electric Easy UPS Online Monitoring Software 访问控制错误漏洞 — APC Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022) CWE-306 7.5 High 2023-04-18
CVE-2023-29412 Schneider Electric Easy UPS Online Monitoring Software 操作系统命令注入漏洞 — APC Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022) CWE-78 9.8 Critical 2023-04-18
CVE-2023-29411 Schneider Electric Easy UPS Online Monitoring Software 访问控制错误漏洞 — APC Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022) CWE-306 9.8 Critical 2023-04-18

This page lists every published CVE security advisory associated with Schneider Electric. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.