schneider-electric

765 tracked vulnerabilities.

CVE-2017-6026 CRITICAL
Schneider Electric Modicon PLCs <4.0.5.11 - Info Disclosure
Jun 30, 2017
CVSS 9.1
EPSS 0.15
CVE-2017-6017 HIGH
Schneider Electric Modicon M340 PLC - Resource Exhaustion via Crafted Packet Sequence
Jun 30, 2017
CVSS 7.5
EPSS 0.05
CVE-2017-7966 HIGH
Schneider Electric SoMachine HVAC Programming Software 2.1.0 - DLL Hijacking
Jun 07, 2017
CVSS 8.8
EPSS 0.01
CVE-2017-7965 HIGH
Schneider Electric SoMachine HVAC v2.1.0 - Buffer Overflow in AlTracePrint.exe
Jun 07, 2017
CVSS 7.3
EPSS 0.00
CVE-2017-7968 HIGH
Schneider Electric Wonderware InduSoft Web Studio < 8.0 - Incorrect Default Permissions
May 19, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-7907 MEDIUM
Schneider Electric Wonderware Historian Client < 2014 R2 SP1 - XML External Entity Injection
May 19, 2017
CVSS 6.6
EPSS 0.00
CVE-2017-7967 MEDIUM
Schneider Electric VAMPSET < 2.2.189 - Memory Corruption via Malformed VF2 File
May 09, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-8371 MEDIUM
StruxureWare Data Center Expert < 7.3.1 - Insufficiently Protected Credentials
Apr 30, 2017
CVSS 6.8
EPSS 0.00
CVE-2017-7689 CRITICAL
Schneider Electric homeLYnk Controller <1.5.0 - Command Injection
Apr 11, 2017
CVSS 9.8
EPSS 0.03
CVE-2017-6033 HIGH
Schneider Electric Interactive Graphical SCADA System < 12.0 - DLL Hijacking via Uncontrolled Search Path
Apr 07, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-6019 HIGH
Schneider Electric Conext ComBox 865-1058 Firmware < 3.03 - Denial of Service via Rapid Requests
Apr 07, 2017
CVSS 7.5
EPSS 0.21
CVE-2017-7575 CRITICAL
Schneider Electric Modicon TM221CE16R 1.3.3.3 - Info Disclosure
Apr 06, 2017
CVSS 9.8
EPSS 0.01
CVE-2017-7574 CRITICAL
Schneider Electric SoMachine Basic 1.4 SP1 & Modicon TM221CE16R 1.3.3.3 Hard-coded Credentials
Apr 06, 2017
CVSS 9.8
EPSS 0.00
CVE-2017-5178 CRITICAL
Schneider Electric Tableau Server/Desktop <10.1.3 - Info Disclosure
Mar 08, 2017
CVSS 9.8
EPSS 0.02
CVE-2017-5155 HIGH
Schneider Electric Wonderware Historian <2014 R2 SP1 P01 - Info Dis...
Feb 13, 2017
CVSS 7.3
EPSS 0.01
CVE-2016-8374 HIGH
Schneider Electric Magelis HMI - Denial of Service via Uncontrolled Resource Consumption
Feb 13, 2017
CVSS 7.5
EPSS 0.01
CVE-2016-8367 MEDIUM
Schneider Electric Magelis HMI - Denial of Service via Connection Exhaustion
Feb 13, 2017
CVSS 5.3
EPSS 0.14
CVE-2016-8354 HIGH
Schneider Electric Unity PRO < V11.1 - Code Injection
Feb 13, 2017
CVSS 7.0
EPSS 0.00
CVE-2016-8352 CRITICAL
Schneider Electric ConneXium - Buffer Overflow
Feb 13, 2017
CVSS 10.0
EPSS 0.03
CVE-2016-5818 CRITICAL
Schneider Electric PowerLogic PM8ECC <2.651 - Info Disclosure
Feb 13, 2017
CVSS 9.8
EPSS 0.00
CVE-2016-5815 CRITICAL
Schneider Electric - Info Disclosure
Feb 13, 2017
CVSS 9.8
EPSS 0.01
CVE-2016-5809 HIGH
Schneider Electric IONXXXX Series - Cross-Site Request Forgery
Feb 13, 2017
CVSS 8.8
EPSS 0.01
CVE-2016-4529 HIGH
Schneider Electric SoMachine <2.1.0 - RCE
Jul 15, 2016
CVSS 7.3
EPSS 0.04
CVE-2016-4520 CRITICAL
Schneider Electric Pelco Digital Sentry <7.14 - RCE
Jul 15, 2016
CVSS 9.8
EPSS 0.03
CVE-2016-4513 MEDIUM
Schneider Electric PowerLogic PM8ECC Firmware < 2.60 - Cross-Site Scripting
Jun 26, 2016
CVSS 6.1
EPSS 0.00