Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Schweitzer Engineering Laboratories — Vulnerabilities & Security Advisories 60

Browse all 60 CVE security advisories affecting Schweitzer Engineering Laboratories. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Schweitzer Engineering Laboratories (SEL) specializes in digital protection relays, automation, and monitoring systems for electrical power grids. With sixty recorded Common Vulnerabilities and Exposures (CVEs), the company’s software ecosystem has historically been susceptible to remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from web-based configuration interfaces. Privilege escalation vulnerabilities have also been documented, allowing unauthorized users to gain administrative control over critical infrastructure components. While SEL maintains a robust security posture with regular firmware updates, the nature of its industrial control systems makes it a high-value target for state-sponsored actors and cybercriminals seeking to disrupt energy distribution. Notable incidents include the discovery of hardcoded credentials in older relay models, highlighting the challenges of securing legacy industrial equipment. Despite these risks, SEL continues to implement enhanced encryption and access controls to mitigate threats to global power grid stability.

Found 19 results / 60Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2023-31166 Improper Limitation of a Pathname to a Restricted Directory — SEL-3505CWE-22 4.1 Medium2023-05-10
CVE-2023-31165 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31164 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31163 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31162 Improper Input Validation in Web Interface — SEL-3505CWE-20 4.8 Medium2023-05-10
CVE-2023-31160 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31159 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31158 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31157 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31156 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31155 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31154 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31153 Improper Neutralization of Input During Web Page Generation — SEL-3505CWE-79 4.3 Medium2023-05-10
CVE-2023-31152 Authentication Bypass Using an Alternate Path or Channel — SEL-3505CWE-288 4.0 Medium2023-05-10
CVE-2023-31151 Improper Certificate Validation — SEL-3505CWE-295 4.7 Medium2023-05-10
CVE-2023-31150 Storing Passwords in a Recoverable Format — SEL-3505CWE-257 8.0 High2023-05-10
CVE-2023-31149 Improper Input Validation in Web Interface — SEL-3505CWE-20 9.1 Critical2023-05-10
CVE-2023-31148 Improper Input Validation in Web Interface — SEL-3505CWE-20 9.1 Critical2023-05-10
CVE-2023-2310 Channel Accessible by Non-Endpoint — SEL-3505CWE-300 6.8 Medium2023-05-10

This page lists every published CVE security advisory associated with Schweitzer Engineering Laboratories. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.