Schneider Electric Ecostruxure Cybersecurity Admin Expert
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Schneider Electric Ecostruxure Cybersecurity Admin Expert.
By the Year
In 2026 there have been 1 vulnerability in Schneider Electric Ecostruxure Cybersecurity Admin Expert. Ecostruxure Cybersecurity Admin Expert did not have any published security vulnerabilities last year. That is, 1 more vulnerability have already been reported in 2026 as compared to last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 1 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 2 | 8.20 |
It may take a day or so for new Ecostruxure Cybersecurity Admin Expert vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Schneider Electric Ecostruxure Cybersecurity Admin Expert Security Vulnerabilities
Insufficiently Protected Credentials in Schneider Electric Device Management App
CVE-2026-14354
- July 29, 2026
CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.
Insufficiently Protected Credentials
Improper Cert Validation in EcoStruxure Cybersecurity Admin Expert <2.2 (Cred Leak)
CVE-2022-32748
8.3 - High
- January 30, 2023
A CWE-295: Improper Certificate Validation vulnerability exists that could cause the CAE software to give wrong data to end users when using CAE to configure devices. Additionally, credentials could leak which would enable an attacker the ability to log into the configuration tool and compromise other devices in the network. Affected Products: EcoStruxure Cybersecurity Admin Expert (CAE) (Versions prior to 2.2)
Improper Certificate Validation
EcoStruxure CAE 2.2 AuthByp Spoofing Vulnerability
CVE-2022-32747
8.1 - High
- January 30, 2023
A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of devices or facilitate backdoor account creation by spoofing a device on the local network. Affected Products: EcoStruxure Cybersecurity Admin Expert (CAE) (Versions prior to 2.2)
Authentication Bypass by Spoofing
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Schneider Electric Ecostruxure Cybersecurity Admin Expert or by Schneider Electric? Click the Watch button to subscribe.