CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential account compromise when an attacker with privileged local access reads improperly protected system files.
Metrics
Affected Vendors & Products
References
History
Fri, 26 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Schneider Electric
Schneider Electric easylogic T150 (formerly Saitel Dr) Remote Terminal Unit & Controller Schneider Electric saitel Dp Remote Terminal Unit & Controller |
|
| Vendors & Products |
Schneider Electric
Schneider Electric easylogic T150 (formerly Saitel Dr) Remote Terminal Unit & Controller Schneider Electric saitel Dp Remote Terminal Unit & Controller |
Thu, 25 Jun 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Permission Assignment Flaw Exposes Password Hashes in Schneider Electric Remote Terminals |
Thu, 25 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 25 Jun 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential account compromise when an attacker with privileged local access reads improperly protected system files. | |
| Weaknesses | CWE-732 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: schneider
Published: 2026-06-25T14:47:24.496Z
Updated: 2026-06-25T15:49:36.271Z
Reserved: 2026-05-26T19:45:22.354Z
Link: CVE-2026-9651
Updated: 2026-06-25T15:49:33.678Z
No data.
No data.