schneider-electric

765 tracked vulnerabilities.

CVE-2022-32530 MEDIUM
Geo SCADA Mobile < 222 - Exposure of Resource to Wrong Sphere via Malicious Application
Jun 24, 2022
CVSS 4.8
EPSS 0.00
CVE-2022-30238 HIGH
Wiser Smart EER21000 and EER21001 Firmware < 4.5 - Improper Authentication
Jun 02, 2022
CVSS 8.3
EPSS 0.00
CVE-2022-30237 HIGH
Wiser Smart EER21000 and EER21001 < 4.5 - Missing Encryption of Sensitive Data
Jun 02, 2022
CVSS 8.2
EPSS 0.00
CVE-2022-30236 HIGH
Wiser Smart < V4.5 - Cross-Site Request Forgery
Jun 02, 2022
CVSS 8.2
EPSS 0.00
CVE-2022-30235 HIGH
Wiser Smart EER21000 and EER21001 < 4.5 - Unauthenticated Brute Force Attack
Jun 02, 2022
CVSS 8.6
EPSS 0.00
CVE-2022-30234 CRITICAL
Wiser Smart EER21000 and EER21001 Firmware < 4.5 - Use of Hard-coded Credentials
Jun 02, 2022
CVSS 9.4
EPSS 0.00
CVE-2022-30233 MEDIUM
Schneider Electric Wiser Smart EER21000 and EER21001 Firmware < 4.5 - Improper Input Validation
Jun 02, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-30232 HIGH
PowerLogic ION Setup Firmware < 3.2.22096.01 - Remote Code Execution via Request Interception
Jun 02, 2022
CVSS 8.0
EPSS 0.01
CVE-2022-26507 CRITICAL
AT&T Labs Xmill 0.7 - Buffer Overflow
Apr 14, 2022
CVSS 9.8
EPSS 0.07
CVE-2022-0221 MEDIUM
SCADAPack Workbench <6.6.8a - Info Disclosure
Apr 13, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-24323 MEDIUM
EcoStruxure Control Expert <15.0 & Process Expert <2021 - DoS via Modbus Response
Mar 09, 2022
CVSS 5.3
EPSS 0.00
CVE-2022-24322 MEDIUM
EcoStruxure Control Expert < V15.0 SP1 - Buffer Overflow
Mar 09, 2022
CVSS 5.3
EPSS 0.00
CVE-2022-22806 CRITICAL
Schneider Electric SmartConnect UPS Family - Unauthenticated Authentication Bypass via Malformed Connection
Mar 09, 2022
CVSS 9.8
EPSS 0.00
CVE-2022-22805 CRITICAL
Schneider Electric SmartConnect Family UPS Firmware - Remote Code Execution via TLS Packet Reassembly
Mar 09, 2022
CVSS 9.8
EPSS 0.08
CVE-2022-0715 CRITICAL
APC Smart-UPS Family - Improper Authentication
Mar 09, 2022
CVSS 9.1
EPSS 0.01
CVE-2022-24321 HIGH
ClearSCADA, EcoStruxure Geo SCADA Expert - DoS
Feb 09, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-24320 MEDIUM
ClearSCADA, EcoStruxure Geo SCADA Expert - Info Disclosure
Feb 09, 2022
CVSS 5.9
EPSS 0.00
CVE-2022-24319 MEDIUM
ClearSCADA, EcoStruxure Geo SCADA Expert - Info Disclosure
Feb 09, 2022
CVSS 5.9
EPSS 0.00
CVE-2022-24318 HIGH
ClearSCADA, EcoStruxure Geo SCADA Expert - Info Disclosure
Feb 09, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-24317 HIGH
Schneider-electric Interactive Graphical Scada System Data Server < 15.0.0.22020 - Missing Authorization
Feb 09, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-24316 HIGH
Interactive Graphical SCADA System Data Server < V15.0.0.22020 - In...
Feb 09, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-24315 HIGH
Interactive Graphical SCADA System Data Server < V15.0.0.22020 - DoS
Feb 09, 2022
CVSS 7.5
EPSS 0.02
CVE-2022-24314 HIGH
Schneider-electric Interactive Graphical Scada System Data Server < 15.0.0.22020 - Out-of-Bounds Read
Feb 09, 2022
CVSS 7.5
EPSS 0.03
CVE-2022-24313 CRITICAL
Schneider-electric Interactive Graphical Scada System Data Server < 15.0.0.22020 - Buffer Overflow
Feb 09, 2022
CVSS 9.8
EPSS 0.08
CVE-2022-24312 CRITICAL
Schneider-electric Interactive Graphical Scada System Data Server < 15.0.0.22020 - Path Traversal
Feb 09, 2022
CVSS 9.8
EPSS 0.02