CVE 8.2 HIGH

Initialization of a Resource with an Insecure Default vulnerability on EcoStruxure™ Panel Server_CVE-2026-6866

8.2 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Description

CWE-1188 Initialization of a Resource with an Insecure Default vulnerability exists that could cause unauthorized disclosure of sensitive information when credentials revert to initial settings in rare circumstances, enabling unauthorized authentication using known credentials.

Basic Information

ID CVE-2026-6866
Source schneider
Published May 12, 2026 at 13:59
Modified May 12, 2026 at 15:43

Affected Product

Vendor Schneider Electric
Product EcoStruxure™ Panel Server
Version Versions 002.005.000 and prior
Affected Versions Schneider Electric EcoStruxure™ Panel Server Versions 002.005.000 and prior

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.