CVE-2024-11139: Schneider Electric Ecostruxure Power Build Rapsody

Medium severity, CVSS 4.6. EPSS: 0.2% chance of exploitation in the next 30 days.

CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could allow local attackers to exploit these issues to potentially execute arbitrary code when opening a malicious project file.

Affected products

  • Schneider Electric Ecostruxure Power Build Rapsody: up to and including v2.5.2 NL; up to and including v2.7.1 FR; up to and including v2.7.5 ES; up to and including v2.5.4 INT

Published 2025-01-17. Last modified 2026-06-17.