CVE-2024-2229: Schneider Electric Ecostruxure Power Monitoring Expert

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause remote code execution when a malicious project file is loaded into the application by a valid user.

Affected products

Published 2024-03-18. Last modified 2026-06-17.