EcoStruxure IT Data Center Expert Security Notification
This document details multiple critical and high-severity vulnerabilities in EcoStruxure™ IT Data Center Expert versions 8.3 and prior, including OS command injection, insufficient entropy, code injection, SSRF, privilege escalation, and XML external entity injection. Schneider Electric recommends upgrading to version 9.0 to remediate these flaws, which could lead to unauthenticated remote code execution, information disclosure, and system compromise.
Failed to load PDF
Download insteadYou might also like
Acti9 iC60N Disbo Miniature Circuit Breaker Data Sheet
3 pages
SpaceLogic TRC3500/TRC6500 Touchscreen Room Controller PICS
7 pages
H600-S6 Current Monitoring Switch Manual
2 pages
EcoStruxure Building Operation Enterprise Central Specification Sheet
4 pages
Modicon M258 Compact Logic Controller
5 pages
Low Voltage Automatic Power Factor Correction Capacitor Bank Specification
15 pages
EcoStruxure IT Expert Remote Training Service Statement of Work
8 pages
Satchwell NIU Network Interface Unit Specification Sheet
2 pages
STD290 Average Duct Temperature Sensor
2 pages
Ecodesign Guide for Pump Motor Control Systems
32 pages