Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Schweitzer Engineering Laboratories — Vulnerabilities & Security Advisories 60

Browse all 60 CVE security advisories affecting Schweitzer Engineering Laboratories. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Schweitzer Engineering Laboratories (SEL) specializes in digital protection relays, automation, and monitoring systems for electrical power grids. With sixty recorded Common Vulnerabilities and Exposures (CVEs), the company’s software ecosystem has historically been susceptible to remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from web-based configuration interfaces. Privilege escalation vulnerabilities have also been documented, allowing unauthorized users to gain administrative control over critical infrastructure components. While SEL maintains a robust security posture with regular firmware updates, the nature of its industrial control systems makes it a high-value target for state-sponsored actors and cybercriminals seeking to disrupt energy distribution. Notable incidents include the discovery of hardcoded credentials in older relay models, highlighting the challenges of securing legacy industrial equipment. Despite these risks, SEL continues to implement enhanced encryption and access controls to mitigate threats to global power grid stability.

Found 19 results / 60 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2023-31166 Improper Limitation of a Pathname to a Restricted Directory — SEL-3505 CWE-22 4.1 Medium 2023-05-10
CVE-2023-31165 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31164 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31163 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31162 Improper Input Validation in Web Interface — SEL-3505 CWE-20 4.8 Medium 2023-05-10
CVE-2023-31160 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31159 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31158 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31157 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31156 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31155 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31154 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31153 Improper Neutralization of Input During Web Page Generation — SEL-3505 CWE-79 4.3 Medium 2023-05-10
CVE-2023-31152 Authentication Bypass Using an Alternate Path or Channel — SEL-3505 CWE-288 4.0 Medium 2023-05-10
CVE-2023-31151 Improper Certificate Validation — SEL-3505 CWE-295 4.7 Medium 2023-05-10
CVE-2023-31150 Storing Passwords in a Recoverable Format — SEL-3505 CWE-257 8.0 High 2023-05-10
CVE-2023-31149 Improper Input Validation in Web Interface — SEL-3505 CWE-20 9.1 Critical 2023-05-10
CVE-2023-31148 Improper Input Validation in Web Interface — SEL-3505 CWE-20 9.1 Critical 2023-05-10
CVE-2023-2310 Channel Accessible by Non-Endpoint — SEL-3505 CWE-300 6.8 Medium 2023-05-10

This page lists every published CVE security advisory associated with Schweitzer Engineering Laboratories. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.