CVE-2024-2229: Schneider Electric Ecostruxure Power Monitoring Expert
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause remote code execution when a malicious project file is loaded into the application by a valid user.
Affected products
- Schneider Electric Ecostruxure Power Monitoring Expert: any version
- Schneider Electric Ecostruxure Power Design - Ecodial
Published 2024-03-18. Last modified 2026-06-17.