CVE-2026-8045
7.1HIGH
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 9 June 2026
What is CVE-2026-8045?
CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists that could cause information disclosure of server-side file contents when an attacker with a Data Center Expert user account submits crafted XML payloads to SOAP service endpoints.
Affected Version(s)
EcoStruxure™ IT Data Center Expert v9.1.1 and Prior