CVE-2025-2223: Schneider Electric Connexium Network Manager
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
CWE-20: Improper Input Validation vulnerability exists that could cause a loss of Confidentiality, Integrity and Availability of engineering workstation when a malicious project file is loaded by a user from the local system.
Affected products
- Schneider Electric Connexium Network Manager: any version
Published 2025-04-09. Last modified 2026-06-17.