Summary
Hitachi Energy is aware of insecure HTTP transmission vulnerability in PROMOD V product versions listed in this document. This vulnerability could allow attackers to intercept or manipulate sensitive data in transit, potentially leading to credential theft, session hijacking, or unauthorized access.
The following versions …
Summary
Successful exploitation of these vulnerabilities could disclose information and allow a malicious user to execute arbitrary code on affected installations.
The following versions of Labcenter Proteus 9 are affected:
- Proteus 9.1_SP4_Build_42914
| CVSS | Vendor | Equipment | …
|---|
Summary
Successful exploitation of these vulnerabilities could allow an attacker to gain unauthorized access to device information or cause a denial-of-service condition.
The following versions of ST Engineering iDirect iQ-Series Terminals are affected:
- Evolution iQ‑Series terminals <=4.5.2.1 (CVE-2026-38059, CVE-2026-38057)
- 3315‑Series terminals <=4.5.2.1 …
Summary
Successful exploitation of these vulnerabilities could allow unauthenticated users to access and control IoT Hub managed devices.
The following versions of Gardyn IoT Hub are affected:
- Home Firmware
- Studio Firmware
- Cloud API <2.12.2026 (CVE-2026-13768, CVE-2026-55726, CVE-2026-54477)
Summary
Successful exploitation of this vulnerability could allow an attacker to upload arbitrary malicious firmware to the device.
The following versions of CubeSpace CW0057 Reaction Wheel are affected:
- CW0057 Reaction Wheel
| CVSS | Vendor | Equipment | … |
|---|
Summary
Successful exploitation of these vulnerabilities can allow an attacker to cause unauthorized access and exposure of sensitive information when the unauthenticated attacker accesses credentials stored within firmware or system files.
The following versions of Schneider Electric EasyLogic T150 and Saitel DP RTU are affected:
…Summary
Successful exploitation of these vulnerabilities could allow an attacker to remotely issue commands, modify operational values, interfere with control logic, and alter device behavior without authentication or privilege enforcement.
The following versions of Delta Electronics DVP12SE PLC are affected:
- DVP12SE PLC vers:all/* …
Summary
Schneider Electric is aware of a vulnerability in its EcoStruxure™ IT Data Center Expert. The EcoStruxure™ IT Data Center Expert product is a scalable monitoring software that collects, organizes, and distributes critical device information providing a comprehensive view of equipment. Failure to apply the remediation …