Skip to main content

Vendor archive

schneider-electric CVEs

Beta · best-effort

778 CVEs tagged to vendor schneider-electric153 Critical, 381 High, 229 Medium, 15 Low, 0 Unrated.

CVE-2017-9956

Published Sep 26, 2017

An authentication bypass vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system contains a hard-coded valid session. A…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2017-7974

Published Sep 26, 2017

A path traversal information disclosure vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can execut…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-7973

Published Sep 26, 2017

A SQL injection vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can use calls to various paths all…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-6030

Published Jun 30, 2017

A predictable value range from previous values issue was discovered in Schneider Electric Modicon PLCs Modicon M221, firmware versions prior to Version 1.5.0.0, Modicon M241, firm…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2017-7966

Published Jun 7, 2017

A DLL Hijacking vulnerability in the programming software in Schneider Electric's SoMachine HVAC v2.1.0 allows a remote attacker to execute arbitrary code on the targeted system.…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-7965

Published Jun 7, 2017

A buffer overflow vulnerability exists in Programming Software executable AlTracePrint.exe, in Schneider Electric's SoMachine HVAC v2.1.0 for Modicon M171/M172 Controller.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2017-7967

Published May 9, 2017

All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vu…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 676-700 of 778 CVEsPage 28 of 32