CVE-2025-0813: Schneider Electric Ecostruxure Power Automation System User Interface Epas-UI - Secured Versions

Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.

CWE-287: Improper Authentication vulnerability exists that could cause an Authentication Bypass when an unauthorized user without permission rights has physical access to the EPAS-UI computer and is able to reboot the workstation and interrupt the normal boot process.

Affected products

  • Schneider Electric Ecostruxure Power Automation System User Interface Epas-UI - Secured Versions

Published 2025-03-12. Last modified 2026-06-17.