CVE-2023-5985: Schneider Electric ION8650 Firmware
Medium severity, CVSS 4.8. EPSS: 0.4% chance of exploitation in the next 30 days.
A CWE-79 Improper Neutralization of Input During Web Page Generation vulnerability exists that could cause compromise of a user’s browser when an attacker with admin privileges has modified system values.
Affected products
- Schneider Electric ION8650 Firmware: any version
- Schneider Electric ION8800 Firmware: any version
Published 2023-11-15. Last modified 2026-06-17.