CVE-2026-2273
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exist that could cause execution of untrusted commands on the engineering workstation which could result in a limited compromise of the workstation and a potential loss of Confidentiality, Integrity and Availability of the subsequent system when an authenticated user opens a malicious project file.
| CWE | CWE-94 |
| Vendor | schneider electric |
| Product | ecostruxure™ automation expert |
| Published | Mar 10, 2026 |
| Last Updated | Mar 10, 2026 |
Stay Ahead of the Next One
Get instant alerts for schneider electric ecostruxure™ automation expert
Be the first to know when new unknown vulnerabilities affecting schneider electric ecostruxure™ automation expert are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Schneider Electric / EcoStruxure™ Automation Expert
Versions prior to v25.0.1