Reachable Assertion Vulnerability in Schneider Electric Network Services
CVE-2026-9718

6.9MEDIUM

What is CVE-2026-9718?

A reachable assertion vulnerability exists in Schneider Electric's network-exposed services, allowing authenticated attackers to send specially crafted requests. Upon doing so, attackers may trigger a denial-of-service condition, which affects the availability of the system. This vulnerability highlights the importance of securing network services against unauthorized access and tailored attacks.

Affected Version(s)

PowerLogic™ P7 Version V02.003.001.000 and prior

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.