Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Schneider ELectric — Vulnerabilities & Security Advisories 287

Browse all 287 CVE security advisories affecting Schneider ELectric. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Schneider Electric operates as a global specialist in energy management and industrial automation, providing critical infrastructure solutions for data centers, buildings, and manufacturing facilities. Its extensive product portfolio, including programmable logic controllers and supervisory control and data acquisition systems, has historically been associated with a significant volume of vulnerabilities, currently totaling 287 Common Vulnerabilities and Exposures. These security flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from legacy protocols or default configurations in industrial control interfaces. While the company has implemented various security patches and guidelines, the sheer scale of its connected ecosystem presents persistent attack surfaces. Notable incidents have highlighted risks in unpatched firmware and weak authentication mechanisms within its EcoStruxure platform, underscoring the critical need for rigorous network segmentation and continuous monitoring to mitigate potential disruptions to essential operational technology environments.

CVE IDTitleCVSSSeverityPublished
CVE-2022-32523 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30
CVE-2022-32524 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30
CVE-2022-32525 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30
CVE-2022-32526 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30
CVE-2022-32527 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30
CVE-2022-32528 Schneider Electric IGSS Data Server 访问控制错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-306 8.6 High2023-01-30
CVE-2022-32529 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30
CVE-2022-32747 Schneider Electric EcoStruxure Cybersecurity Admin Expert 安全漏洞 — EcoStruxure™ Cybersecurity Admin Expert (CAE)CWE-290 8.0 High2023-01-30
CVE-2022-32748 Schneider Electric EcoStruxure Cybersecurity Admin Expert 信任管理问题漏洞 — EcoStruxure™ Cybersecurity Admin Expert (CAE)CWE-295 7.9 High2023-01-30
CVE-2022-45788 Schneider Electric EcoStruxure Control Expert 代码问题漏洞 — EcoStruxure Control Expert CWE-754 7.5 High2023-01-30
CVE-2022-0222 Schneider Electric Modicon M340 安全漏洞 — Modicon M340 CPUsCWE-269 7.5 High2022-11-22
CVE-2022-37301 Schneider Electric Modicon M340 数字错误漏洞 — Modicon M340 CPU (part numbers BMXP34*)CWE-191 7.5 High2022-11-22
CVE-2022-41666 Schneider Electric EcoStruxure Operator Terminal Expert 数据伪造问题漏洞 — EcoStruxure Operator Terminal ExpertCWE-347 7.0 High2022-11-04
CVE-2022-41667 Schneider Electric EcoStruxure Operator Terminal Expert 路径遍历漏洞 — EcoStruxure Operator Terminal ExpertCWE-22 7.0 High2022-11-04
CVE-2022-41668 Schneider Electric EcoStruxure Operator Terminal Expert 代码问题漏洞 — EcoStruxure Operator Terminal ExpertCWE-704 7.0 High2022-11-04
CVE-2022-41669 Schneider Electric EcoStruxure Operator Terminal Expert 数据伪造问题漏洞 — EcoStruxure Operator Terminal ExpertCWE-347 7.0 High2022-11-04
CVE-2022-41670 Schneider Electric EcoStruxure Operator Terminal Expert 路径遍历漏洞 — EcoStruxure Operator Terminal ExpertCWE-22 7.0 High2022-11-04
CVE-2022-41671 Schneider Electric EcoStruxure Operator Terminal Expert SQL注入漏洞 — EcoStruxure Operator Terminal ExpertCWE-89 7.0 High2022-11-04
CVE-2022-37302 Schneider Electric EcoStruxure Control Expert 缓冲区错误漏洞 — EcoStruxure Control ExpertCWE-119 5.5 Medium2022-09-13
CVE-2022-37300 多款Schneider Electric产品授权问题漏洞 — EcoStruxure Control ExpertCWE-640 9.8 Critical2022-09-12
CVE-2022-34765 多款Schneider Electric产品安全漏洞 — OPC UA Modicon Communication ModuleCWE-73 5.5 Medium2022-07-13
CVE-2022-34764 多款Schneider Electric产品缓冲区错误漏洞 — OPC UA Modicon Communication ModuleCWE-119 5.9 Medium2022-07-13
CVE-2022-34763 多款Schneider Electric产品数据伪造问题漏洞 — OPC UA Modicon Communication ModuleCWE-345 5.9 Medium2022-07-13
CVE-2022-34762 多款Schneider Electric产品路径遍历漏洞 — OPC UA Modicon Communication ModuleCWE-22 5.9 Medium2022-07-13
CVE-2022-34761 多款Schneider Electric产品代码问题漏洞 — OPC UA Modicon Communication ModuleCWE-476 7.5 High2022-07-13
CVE-2022-34760 多款Schneider Electric产品安全漏洞 — OPC UA Modicon Communication ModuleCWE-835 7.5 High2022-07-13
CVE-2022-34759 多款Schneider Electric产品缓冲区错误漏洞 — OPC UA Modicon Communication ModuleCWE-787 7.5 High2022-07-13
CVE-2022-34758 Schneider Electric Easergy P5 和 P3 输入验证错误漏洞 — Easergy P5CWE-20 5.1 Medium2022-07-13
CVE-2022-34757 Schneider Electric Easergy P5 加密问题漏洞 — Easergy P5CWE-327 6.7 Medium2022-07-13
CVE-2022-34756 Schneider Electric Easergy P5 安全漏洞 — Easergy P5CWE-120 8.8 High2022-07-13

This page lists every published CVE security advisory associated with Schneider ELectric. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.