CVE-2026-0667: Schneider Electric Remoteconnect
Critical severity, CVSS 9.3. EPSS: 0.5% chance of exploitation in the next 30 days.
CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.
Affected products
- Schneider Electric Remoteconnect: before R3.4.2 (fixed in R3.4.2)
- Schneider Electric Scadapack 47x
- Schneider Electric Scadapack 47xi
- Schneider Electric Scadapack 57x: any version
Published 2026-07-29. Last modified 2026-07-30.