CVE-2023-5402: Schneider Electric C-Bus Toolkit

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

A CWE-269: Improper Privilege Management vulnerability exists that could cause a remote code execution when the transfer command is used over the network.

Affected products

Published 2023-10-04. Last modified 2026-06-17.