CVE-2024-0865: Schneider Electric Ecostruxure It Gateway
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
CWE-798: Use of hard-coded credentials vulnerability exists that could cause local privilege escalation when logged in as a non-administrative user.
Affected products
- Schneider Electric Ecostruxure It Gateway: before 1.21.0 (fixed in 1.21.0)
Published 2024-06-12. Last modified 2026-06-17.