Vulnerabilities > Schneider Electric

DATE CVE VULNERABILITY TITLE RISK
2021-05-26 CVE-2021-22741 Unspecified vulnerability in Schneider-Electric products
Use of Password Hash with Insufficient Computational Effort vulnerability exists in ClearSCADA (all versions), EcoStruxure Geo SCADA Expert 2019 (all versions), and EcoStruxure Geo SCADA Expert 2020 (V83.7742.1 and prior), which could cause the revealing of account credentials when server database files are available.
local
low complexity
schneider-electric
6.7
2021-05-26 CVE-2021-22742 Improper Check for Unusual or Exceptional Conditions vulnerability in Schneider-Electric products
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
low complexity
schneider-electric CWE-754
3.9
2021-05-26 CVE-2021-22743 Unspecified vulnerability in Schneider-Electric products
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex TCM 4351B installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
low complexity
schneider-electric
3.9
2021-05-26 CVE-2021-22744 Unspecified vulnerability in Schneider-Electric products
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
low complexity
schneider-electric
3.9
2021-05-26 CVE-2021-22745 Unspecified vulnerability in Schneider-Electric products
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
low complexity
schneider-electric
3.9
2021-05-26 CVE-2021-22746 Unspecified vulnerability in Schneider-Electric products
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
low complexity
schneider-electric
3.9
2021-05-26 CVE-2021-22747 Unspecified vulnerability in Schneider-Electric products
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
low complexity
schneider-electric
3.9
2021-04-13 CVE-2021-22720 Unspecified vulnerability in Schneider-Electric C-Bus Toolkit 1.15.7
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring a project.
network
low complexity
schneider-electric
7.2
2021-04-13 CVE-2021-22719 Unspecified vulnerability in Schneider-Electric C-Bus Toolkit 1.15.7
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when a file is uploaded.
network
low complexity
schneider-electric
8.8
2021-04-13 CVE-2021-22718 Unspecified vulnerability in Schneider-Electric C-Bus Toolkit 1.15.7
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring project files.
local
low complexity
schneider-electric
7.8