Ecostruxure Power Build Rapsody Schneider Electric Ecostruxure Power Build Rapsody

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Schneider Electric Ecostruxure Power Build Rapsody.

By the Year

In 2026 there have been 2 vulnerabilities in Schneider Electric Ecostruxure Power Build Rapsody. Ecostruxure Power Build Rapsody did not have any published security vulnerabilities last year. That is, 2 more vulnerabilities have already been reported in 2026 as compared to last year.

Year Vulnerabilities Average Score
2026 2 0.00
2025 0 0.00
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 2 7.80

It may take a day or so for new Ecostruxure Power Build Rapsody vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Schneider Electric Ecostruxure Power Build Rapsody Security Vulnerabilities

Use-After-Free in Rapsody SSD Import RCE
CVE-2025-13845 - January 15, 2026

CWE-416: Use After Free vulnerability that could cause remote code execution when the end user imports the malicious project file (SSD file) into Rapsody.

Dangling pointer

Rapsody DF: Heap Corruption via malicious SSD import
CVE-2025-13844 - January 15, 2026

CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) shared by the attacker into Rapsody.

Double-free

A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior)
CVE-2021-22698 7.8 - High - January 26, 2021

A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior) that could allow a stack-based buffer overflow to occur which could result in remote code execution when a malicious SSD file is uploaded and improperly parsed.

Unrestricted File Upload

A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior)
CVE-2021-22697 7.8 - High - January 26, 2021

A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior) that could allow a use-after-free condition which could result in remote code execution when a malicious SSD file is uploaded and improperly parsed.

Unrestricted File Upload

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Schneider Electric Ecostruxure Power Build Rapsody or by Schneider Electric? Click the Watch button to subscribe.

subscribe