Skip to main content

Vendor archive

schneider-electric CVEs

Beta · best-effort

778 CVEs tagged to vendor schneider-electric153 Critical, 381 High, 229 Medium, 15 Low, 0 Unrated.

CVE-2023-29410

Published Apr 18, 2023

A CWE-20: Improper Input Validation vulnerability exists that could allow an authenticated attacker to gain the same privilege as the application on the server when a malicious pa…

CVSS 7.2 · High

CVE-2023-29413

Published Apr 18, 2023

A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause Denial-of-Service when accessed by an unauthenticated user on the Schneider UPS Monit…

CVSS 7.5 · High

CVE-2023-29412

Published Apr 18, 2023

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote code execution when manipulating in…

CVSS 9.8 · Critical

CVE-2023-29411

Published Apr 18, 2023

A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution wit…

CVSS 9.8 · Critical

CVE-2022-43378

Published Apr 18, 2023

A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause the user to be tricked into performing unintended actions when external addr…

CVSS 6.5 · Medium

CVE-2022-43376

Published Apr 18, 2023

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause code and session manipulation when malicious c…

CVSS 7.6 · High
Showing 76-100 of 778 CVEsPage 4 of 32