CVE-2013-0687: Schneider Electric Micom s1 Studio

Medium severity, CVSS 6.6. EPSS: 0.3% chance of exploitation in the next 30 days.

The installer routine in Schneider Electric MiCOM S1 Studio uses world-writable permissions for executable files, which allows local users to modify the service or the configuration files, and consequently gain privileges or trigger incorrect protective-relay operation, via a Trojan horse executable file.

Affected products

Published 2013-04-18. Last modified 2026-06-16.