VendorsSchneider Electricecostruxure_it_gatewayall versions
Vulnerabilities

Schneider Electric EcoStruxure IT Gateway

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2024-10575
CWE-862: Missing Authorization vulnerability exists that could cause unauthorized access when enabled on the network and potentially impacting connected devices.
Published 2024-11-13 · Analyzed
10.0EPSS 0.006
CVE-2020-10626
In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arbitrary code.
Published 2020-05-14 · Modified
7.8EPSS 0.005
CVE-2024-0865
CWE-798: Use of hard-coded credentials vulnerability exists that could cause local privilege escalation when logged in as a non-administrative user.
Published 2024-06-12 · Modified
7.8EPSS 0.002