CVE-2020-7538: Schneider Electric Ecostruxure Control Expert

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software when receiving a specially crafted request over Modbus.

Affected products

Published 2020-11-19. Last modified 2026-06-17.