CVE-2023-6408: Schneider Electric Ecostruxure Control Expert

High severity, CVSS 8.1. EPSS: 0.3% chance of exploitation in the next 30 days.

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of service and loss of confidentiality, integrity of controllers when conducting a Man in the Middle attack.

Affected products

Published 2024-02-14. Last modified 2026-06-17.