CVE-2024-8531: Schneider Electric Data Center Expert
High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.
CWE-347: Improper Verification of Cryptographic Signature vulnerability exists that could compromise the Data Center Expert software when an upgrade bundle is manipulated to include arbitrary bash scripts that are executed as root.
Affected products
- Schneider Electric Data Center Expert: up to and including 8.1.1.3
- Schneider Electric Data Center Expert: up to and including 8.1.1.3
Published 2024-10-11. Last modified 2026-06-17.