CVE-2024-8306: Schneider Electric Vijeo Designer
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized access, loss of confidentiality, integrity and availability of the workstation when non-admin authenticated user tries to perform privilege escalation by tampering with the binaries.
Affected products
- Schneider Electric Vijeo Designer: before 6.3 (fixed in 6.3); version 6.3 only
- Schneider Electric Vijeo Designer Embedded In Ecostruxure Machine Expert: any version
Published 2024-09-11. Last modified 2026-06-17.