Summary
Schneider Electric is aware of a vulnerability in the following products: The Easergy C5 is a scalable and interoperable bay controller, protection and merging unit for large and critical infrastructure electrical distribution systems. The Easergy MiCOM P30 is a family of multifunction protection and control …
Summary
Successful exploitation of these vulnerabilities could allow for an attacker to perform a man-in-the-middle (MitM) attack, cause a factory reset, wipe credentials, or retrieve sensitive information.
The following versions of Tycon Systems TPDIN-Monitor-WEB3 are affected:
- TPDIN-Monitor-WEB3 <=2.2.9 (CVE-2026-77847, CVE-2026-82712, CVE-2026-82684)
Summary
Successful exploitation of this vulnerability could allow an attacker to take control of a high-privilege terminal during installation and run arbitrary commands.
The following versions of OPCFoundation OPC UA LocalDiscoveryServer (LDS) are affected:
- UA-LDS-Installers <1.04.420 (CVE-2026-77477)
| … |
|---|
CISA and the Group of Seven (G7) Cyber Security Working Group released Preparing for the Post-Quantum Era: A Call to Action highlighting the urgent need for organizations and governments to begin transitioning to post-quantum cryptography (PQC) to protect sensitive data, authentication systems, and critical assets from emerging quantum computing …
Summary
Successful exploitation of this vulnerability could allow any authenticated user to create projects.
The following versions of Inductive Automation Ignition are affected:
- Ignition <=8.1.53 (CVE-2026-77393)
| CVSS | Vendor | Equipment | Vulnerabilities |
|---|---|---|---|
Summary
Successful exploitation of these vulnerabilities could result in an attacker accessing sensitive credentials, disrupting connected infrastructure, or manipulating physical equipment, which could present a physical safety risk.
The following versions of Tycon Systems TPDIN-Monitor-WEB2 (Update A) are affected:
- TPDIN-Monitor-WEB2 <2.4.5 (CVE-2026-61884, CVE-2026-55985) …
Summary
Successful exploitation of this vulnerability could crash the module. The device requires a restart to recover.
The following versions of Rockwell Automation 1756-ENBT Module are affected:
- 1756-ENBT module vers:all/* (CVE-2025-10478)
| CVSS | Vendor | Equipment | … |
|---|
Summary
Successful exploitation of this vulnerability could give an attacker the ability to run any commands or code of the attacker's choice on a target machine at the logged-in user's permission level.
The following versions of Rockwell Automation ControlFLASH are affected:
- ControlFLASH <=V15.07 …