VendorsSchneider Electricmodicon_m262any version
Vulnerabilities

Schneider Electric Modicon M262 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2025-13901
CWE-404 Improper Resource Shutdown or Release vulnerability exists that could cause partial Denial of Service on Machine Expert protocol when an unauthenticated attacker sends malicious payload to occupy active communication channels.
Published 2026-03-10 · Analyzed
6.9EPSS 0.005
CVE-2024-6528
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause a vulnerability leading to a cross-site scripting condition where attackers can have a victim’s browser run arbitrary JavaScript when they visit a page containing the injected payload.
Published 2024-07-11 · Modified
6.1EPSS 0.003