schneider-electric

765 tracked vulnerabilities.

CVE-2021-30061 MEDIUM
Schneider Electric ConneXium Tofino - Code Execution
Apr 03, 2022
CVSS 6.8
EPSS 0.00
CVE-2021-22783 HIGH
Ritto Wiser Door - Session Hijack via Information Exposure
Mar 09, 2022
CVSS 8.8
EPSS 0.00
CVE-2021-22824 HIGH
Schneider-electric Interactive Graphical Scada System Data Collector < 15.0.0.21320 - Buffer Overflow
Feb 11, 2022
CVSS 7.5
EPSS 0.03
CVE-2021-22823 CRITICAL
IGSS dc.exe <15.0.0.21320 - Missing Authentication
Feb 11, 2022
CVSS 9.1
EPSS 0.00
CVE-2021-22806 HIGH
spaceLYnk <2.6.1, Wiser for KNX <2.6.1, fellerLYnk <2.6.1 - Info Di...
Feb 11, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-22805 CRITICAL
IGSS dc.exe <15.0.0.21243 - Missing Authentication
Feb 11, 2022
CVSS 9.1
EPSS 0.00
CVE-2021-22804 HIGH
IGSS dc.exe <15.0.0.21243 - Info Disclosure
Feb 11, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-22803 CRITICAL
Interactive Graphical SCADA System Data Collector <15.0.0.21243 - RCE
Feb 11, 2022
CVSS 9.8
EPSS 0.02
CVE-2021-22802 CRITICAL
Interactive Graphical SCADA System Data Collector <15.0.0.21243 - RCE
Feb 11, 2022
CVSS 9.8
EPSS 0.02
CVE-2021-22801 CRITICAL
ConneXium Network Manager - Improper Privilege Management leading to Arbitrary Command Execution
Feb 11, 2022
CVSS 9.8
EPSS 0.01
CVE-2021-22800 HIGH
Modicon M218 Logic Controller <5.1.0.6 - DoS
Feb 11, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-22798 HIGH
Conext ComBox Firmware - Insufficiently Protected Credentials
Feb 11, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-22796 HIGH
C-Bus Toolkit <1.15.9, C-Gate Server <2.11.7 - RCE
Feb 11, 2022
CVSS 7.8
EPSS 0.01
CVE-2021-22788 HIGH
Schneider Electric Modicon M340 BMXP34 < 3.40 and Multiple Modicon Modules - Denial of Service via HTTP Request
Feb 11, 2022
CVSS 7.5
EPSS 0.01
CVE-2021-22787 HIGH
Schneider Electric Modicon M340 BMXP34 < V3.40 & X80 - DoS via Crafted HTTP Request
Feb 11, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-22785 HIGH
Modicon M340 <V3.40 - Info Disclosure
Feb 11, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-22748 HIGH
C-Bus Toolkit <1.15.9, C-Gate Server <2.11.7 - Path Traversal
Feb 11, 2022
CVSS 8.8
EPSS 0.04
CVE-2021-22817 HIGH
Harmony/Magelis iPC Series - Privilege Escalation
Feb 09, 2022
CVSS 7.8
EPSS 0.00
CVE-2021-22827 HIGH
EcoStruxure Power Monitoring Expert <9.0 - RCE
Jan 28, 2022
CVSS 8.8
EPSS 0.01
CVE-2021-22826 HIGH
EcoStruxure Power Monitoring Expert <9.0 - RCE
Jan 28, 2022
CVSS 8.8
EPSS 0.01
CVE-2021-22825 HIGH
AP7xxxx-AP8xxx < V6.9.6-V1.1.0.3 - Privilege Escalation
Jan 28, 2022
CVSS 8.0
EPSS 0.00
CVE-2021-22822 MEDIUM
Schneider Electric EVlink Firmware < 3.4.0.2 - Cross-Site Scripting via Crafted Web Parameters
Jan 28, 2022
CVSS 6.1
EPSS 0.00
CVE-2021-22821 HIGH
EVlink <R8 V3.4.0.2 - Server-Side Request Forgery via Charging Station Parameters
Jan 28, 2022
CVSS 8.6
EPSS 0.00
CVE-2021-22820 CRITICAL
EVlink <R8 V3.4.0.2 - Info Disclosure
Jan 28, 2022
CVSS 9.8
EPSS 0.01
CVE-2021-22819 MEDIUM
Schneider Electric EVlink Firmware < 3.4.0.2 - Clickjacking via Web Interface iframe
Jan 28, 2022
CVSS 4.3
EPSS 0.00