CVE-2025-2223: Schneider Electric Connexium Network Manager

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

CWE-20: Improper Input Validation vulnerability exists that could cause a loss of Confidentiality, Integrity and Availability of engineering workstation when a malicious project file is loaded by a user from the local system.

Affected products

Published 2025-04-09. Last modified 2026-06-17.