CVE-2018-7236: Schneider Electric IBP1110-1er Firmware

High severity, CVSS 8.1. EPSS: 1.3% chance of exploitation in the next 30 days.

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could enable SSH service due to lack of authentication for /login/bin/set_param could enable SSH service.

Affected products

Published 2018-03-09. Last modified 2026-06-17.