CVE-2021-22752: Schneider Electric Interactive Graphical Scada System
High severity, CVSS 7.8. EPSS: 1.2% chance of exploitation in the next 30 days.
A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code execution due to missing size checks, when a malicious WSP (Workspace) file is being parsed by IGSS Definition.
Affected products
- Schneider Electric Interactive Graphical Scada System: up to and including 15.0.0.21140
Published 2021-06-11. Last modified 2026-06-17.