Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Schneider Electric — Vulnerabilities & Security Advisories 287

Browse all 287 CVE security advisories affecting Schneider Electric. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Schneider Electric operates as a global specialist in energy management and industrial automation, providing critical infrastructure solutions for data centers, buildings, and manufacturing facilities. Its extensive product portfolio, including programmable logic controllers and supervisory control and data acquisition systems, has historically been associated with a significant volume of vulnerabilities, currently totaling 287 Common Vulnerabilities and Exposures. These security flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from legacy protocols or default configurations in industrial control interfaces. While the company has implemented various security patches and guidelines, the sheer scale of its connected ecosystem presents persistent attack surfaces. Notable incidents have highlighted risks in unpatched firmware and weak authentication mechanisms within its EcoStruxure platform, underscoring the critical need for rigorous network segmentation and continuous monitoring to mitigate potential disruptions to essential operational technology environments.

CVE IDTitleCVSSSeverityPublished
CVE-2023-27982 Schneider Electric IGSS Data Server 数据伪造问题漏洞 — IGSS Data Server(IGSSdataServer.exe)CWE-345 8.8 High2023-03-21
CVE-2023-27983 Schneider Electric IGSS Data Server 访问控制错误漏洞 — IGSS Data Server(IGSSdataServer.exe)CWE-306 6.5 Medium2023-03-21
CVE-2023-27984 Schneider Electric IGSS Data Server 输入验证错误漏洞 — IGSS Data Server(IGSSdataServer.exe)CWE-20 7.8 High2023-03-21
CVE-2023-0595 EcoStruxure Geo SCADA Expert 安全漏洞 — EcoStruxure Geo SCADA Expert 2019CWE-117 5.3 Medium2023-02-24
CVE-2021-22786 多款Schneider Electric产品 信息泄露漏洞 — Modicon M340 CPU (part numbers BMXP34*)CWE-200 7.5 High2023-02-01
CVE-2022-2329 Schneider Electric IGSS Data Server 输入验证错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-190 9.8 Critical2023-02-01
CVE-2022-24324 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-02-01
CVE-2022-4062 Schneider Electric EcoStruxure Power Commission 授权问题漏洞 — EcoStruxure Power CommissionCWE-285 7.8 High2023-02-01
CVE-2022-42970 Schneider Electric Easy UPS Online Monitoring Software 访问控制错误漏洞 — APC Easy UPS Online Monitoring SoftwareCWE-306 9.8 Critical2023-02-01
CVE-2022-42971 Schneider Electric Easy UPS Online Monitoring Software 代码问题漏洞 — APC Easy UPS Online Monitoring SoftwareCWE-434 9.8 Critical2023-02-01
CVE-2022-42972 Schneider Electric Easy UPS Online Monitoring Software 安全漏洞 — APC Easy UPS Online Monitoring SoftwareCWE-732 7.8 High2023-02-01
CVE-2022-42973 Schneider Electric Easy UPS Online Monitoring Software 信任管理问题漏洞 — APC Easy UPS Online Monitoring SoftwareCWE-798 7.8 High2023-02-01
CVE-2022-45789 Schneider Electric EcoStruxure Control Expert 安全漏洞 — EcoStruxure Control Expert CWE-294 8.1 High2023-01-31
CVE-2023-22610 EcoStruxure Geo SCADA Expert 安全漏洞 — EcoStruxure Geo SCADA Expert 2019 - 2021 (formerly known as ClearSCADA)CWE-863 9.1 Critical2023-01-31
CVE-2023-22611 EcoStruxure Geo SCADA Expert 信息泄露漏洞 — EcoStruxure Geo SCADA Expert 2019 - 2021 (formerly known as ClearSCADA)CWE-200 7.5 High2023-01-31
CVE-2022-0223 Schneider Electric EcoStruxure Power Build 路径遍历漏洞 — EcoStruxure Power CommissionCWE-22 6.5 Medium2023-01-30
CVE-2022-22731 Schneider Electric EcoStruxure Power Commission 路径遍历漏洞 — EcoStruxure Power CommissionCWE-22 6.5 Medium2023-01-30
CVE-2022-22732 Schneider Electric EcoStruxure Power Commission 安全漏洞 — EcoStruxure Power CommissionCWE-668 3.9 Low2023-01-30
CVE-2022-2988 Schneider Electric SoMachine HVAC 缓冲区错误漏洞 — SoMachine HVACCWE-787 4.3 Medium2023-01-30
CVE-2022-32512 Schneider Electric CanBRASS 缓冲区错误漏洞 — CanBRASSCWE-119 5.3 Medium2023-01-30
CVE-2022-32513 Schneider Electric C-Bus Home Automation 安全漏洞 — C-Bus Network Automation Controller, LSS5500NACCWE-521 9.8 Critical2023-01-30
CVE-2022-32514 Schneider Electric C-Bus多款产品 授权问题漏洞 — C-Bus Network Automation Controller, LSS5500NACCWE-287 9.8 Critical2023-01-30
CVE-2022-32515 Schneider Electric Conext ComBox 安全漏洞 — Conext™ ComBoxCWE-307 8.6 High2023-01-30
CVE-2022-32516 Schneider Electric Conext ComBox 跨站请求伪造漏洞 — Conext™ ComBoxCWE-352 7.5 High2023-01-30
CVE-2022-32517 Schneider Electric Conext ComBox 安全漏洞 — Conext™ ComBoxCWE-1021 6.5 Medium2023-01-30
CVE-2022-32518 Schneider Electric StruxureWare Data Center Expert 安全漏洞 — Data Center ExpertCWE-522 8.0 High2023-01-30
CVE-2022-32519 Schneider Electric StruxureWare Data Center Expert 安全漏洞 — Data Center ExpertCWE-257 8.0 High2023-01-30
CVE-2022-32520 Schneider Electric StruxureWare Data Center Expert 安全漏洞 — Data Center ExpertCWE-522 8.0 High2023-01-30
CVE-2022-32521 Schneider Electric StruxureWare Data Center Expert 代码问题漏洞 — Data Center ExpertCWE-502 7.1 High2023-01-30
CVE-2022-32522 Schneider Electric IGSS Data Server 缓冲区错误漏洞 — IGSS Data Server (IGSSdataServer.exe)CWE-120 9.8 Critical2023-01-30

This page lists every published CVE security advisory associated with Schneider Electric. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.