EIP-2026-101433
PRE-CVESchneider Electric C-Bus Automation Controller (5500SHAC) 1.10 - Remote Code Execution (RCE)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101433. PoCs published by LiquidWorm.
AI-analyzed exploit summary This exploit targets an authenticated arbitrary command execution vulnerability in Schneider Electric C-Bus Automation Controller (5500SHAC) 1.10. It abuses the Start-up (init) script editor to inject malicious Lua script code via the 'script' POST parameter, achieving remote code execution with root privileges.
Description
Schneider Electric C-Bus Automation Controller (5500SHAC) 1.10 - Remote Code Execution (RCE)
Exploits (1)
This exploit targets an authenticated arbitrary command execution vulnerability in Schneider Electric C-Bus Automation Controller (5500SHAC) 1.10. It abuses the Start-up (init) script editor to inject malicious Lua script code via the 'script' POST parameter, achieving remote code execution with root privileges.