CVE-2024-2052: Schneider Electric t200i
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated files and logs exfiltration and download of files when an attacker modifies the URL to download to a different location.
Affected products
- Schneider Electric t200i
- Schneider Electric Easergy t200 DNP3 Models: t200i, t200e, t200p, t200s, t200h
- Schneider Electric Easergy t200 IEC104 Models: t200i, t200e, t200p, t200s, t200h
- Schneider Electric Easergy t200 Modbus Models: t200i, t200e, t200p, t200s, t200h
Published 2024-03-18. Last modified 2026-06-17.