🔧 ProgrammierungWebKit Features for Safari 27.0(17.09.2026 um 13:30 Uhr)
🔧 ProgrammierungWebKit Features for Safari 27.0(17.09.2026 um 13:30 Uhr)
📰 IT Security Nachrichten 🕛 vor 2 Monaten 9 Min Lesezeit CVE-2026-9716
0

Schneider Electric PowerLogic P7

Cyber Threat & Vulnerability Dossier
ANGRIPPSVEKTOR
💻 Lokal
AUTHENTIFIZIERUNG
🔑 Geringe Nutzerrechte nötig
SCHADENSPROFIL
RCE / Vollzugriff / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Patch-Tuesday Update einspielen oder betroffene Dienste in Windows Defender isolieren.
Im CVE-Radar öffnen
↗ Quelle (cisa.gov)
🔬 IoC Intelligence (4 Indikatoren erkannt)
0[.]2[.]003[.]001CVE-2026-9716CVE-2026-9717CVE-2026-9718
🗣️ Stimme:
📑 Inhaltsübersicht





Affected Products


Schneider Electric PowerLogic P7


Vendor:
Schneider Electric

Product Version:
PowerLogic™ P7 version 0.2.003.001.000 and prior

Product Status:
fixed, known_affected



Remediations

Vendor fix
Version V02.004.001 of PowerLogicTM P7 includes a fix for this vulnerability and is available for download. Contact Schneider Electric’s Customer Care Center to download this firmware. Reboot needed: Yes


Mitigation
If customers choose not to apply the remediation provided above, they should immediately apply the following mitigations to reduce the risk of exploit: • Restrict network access to P7 service endpoints (ports 8080 and 3702) • Monitor and alert on anomalous SOAP requests targeting wsApp • Limit administrative access and apply least privilege principles for all users interacting with P7.



Relevant CWE:










Affected Products


Schneider Electric PowerLogic P7


Vendor:
Schneider Electric

Product Version:
PowerLogic™ P7 version 0.2.003.001.000 and prior

Product Status:
fixed, known_affected



Remediations

Vendor fix
Version V02.004.001 of PowerLogicTM P7 includes a fix for this vulnerability and is available for download. Contact Schneider Electric’s Customer Care Center to download this firmware. Reboot needed: Yes


Mitigation
If customers choose not to apply the remediation provided above, they should immediately apply the following mitigations to reduce the risk of exploit: • Restrict network access to P7 service endpoints (ports 8080 and 3702) • Monitor and alert on anomalous SOAP requests targeting wsApp • Limit administrative access and apply least privilege principles for all users interacting with P7.



Relevant CWE:










Affected Products


Schneider Electric PowerLogic P7


Vendor:
Schneider Electric

Product Version:
PowerLogic™ P7 version 0.2.003.001.000 and prior

Product Status:
fixed, known_affected



Remediations

Vendor fix
Version V02.004.001 of PowerLogicTM P7 includes a fix for this vulnerability and is available for download. Contact Schneider Electric’s Customer Care Center to download this firmware. Reboot needed: Yes


Mitigation
If customers choose not to apply the remediation provided above, they should immediately apply the following mitigations to reduce the risk of exploit: • Restrict network access to P7 service endpoints (ports 8080 and 3702) • Monitor and alert on anomalous SOAP requests targeting wsApp • Limit administrative access and apply least privilege principles for all users interacting with P7.



Relevant CWE: