CVE-2023-5402: Schneider Electric C-Bus Toolkit
Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.
A CWE-269: Improper Privilege Management vulnerability exists that could cause a remote code execution when the transfer command is used over the network.
Affected products
- Schneider Electric C-Bus Toolkit: up to and including 1.16.3
Published 2023-10-04. Last modified 2026-06-17.