CVE-2025-0813: Schneider Electric Ecostruxure Power Automation System User Interface Epas-UI - Secured Versions
Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.
CWE-287: Improper Authentication vulnerability exists that could cause an Authentication Bypass when an unauthorized user without permission rights has physical access to the EPAS-UI computer and is able to reboot the workstation and interrupt the normal boot process.
Affected products
- Schneider Electric Ecostruxure Power Automation System User Interface Epas-UI - Secured Versions
Published 2025-03-12. Last modified 2026-06-17.