CVE-2023-6409: Schneider Electric Ecostruxure Control Expert

High severity, CVSS 7.7. EPSS: 0.2% chance of exploitation in the next 30 days.

CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause unauthorized access to a project file protected with application password when opening the file with EcoStruxure Control Expert.

Affected products

Published 2024-02-14. Last modified 2026-06-17.