CVE-2023-27975: Schneider Electric Ecostruxure Control Expert

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

CWE-522: Insufficiently Protected Credentials vulnerability exists that could cause unauthorized access to the project file in EcoStruxure Control Expert when a local user tampers with the memory of the engineering workstation.

Affected products

Published 2024-02-14. Last modified 2026-06-17.