🔐 CVE Alert

CVE-2026-2273

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exist that could cause execution of untrusted commands on the engineering workstation which could result in a limited compromise of the workstation and a potential loss of Confidentiality, Integrity and Availability of the subsequent system when an authenticated user opens a malicious project file.

CWE CWE-94
Vendor schneider electric
Product ecostruxure™ automation expert
Published Mar 10, 2026
Last Updated Mar 10, 2026
Stay Ahead of the Next One

Get instant alerts for schneider electric ecostruxure™ automation expert

Be the first to know when new unknown vulnerabilities affecting schneider electric ecostruxure™ automation expert are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Schneider Electric / EcoStruxure™ Automation Expert
Versions prior to v25.0.1

References

NVD ↗ CVE.org ↗ EPSS Data ↗
download.schneider-electric.com: https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2026-069-04&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-069-04.pdf