CVE-2026-9651: Schneider Electric Easylogic t150 Firmware
Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.
CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential account compromise when an attacker with privileged local access reads improperly protected system files.
Affected products
- Schneider Electric Easylogic t150 Firmware: before 11.06.32 (fixed in 11.06.32)
- Schneider Electric Saitel Dp Firmware: before 11.06.38 (fixed in 11.06.38)
Published 2026-06-25. Last modified 2026-07-14.