Critical severity9.1NVD Advisory· Published Apr 13, 2022· Updated Jun 17, 2026
CVE-2021-22795
CVE-2021-22795
Description
A CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote code execution when performed over the network. Affected Product: StruxureWare Data Center Expert (V7.8.1 and prior)
Affected products
4cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*range: <=7.8.1
- (no CPE)range: unspecified
- Range: <=V7.8.1
- Range: <=V7.8.1
Patches
Vulnerability mechanics
References
1- www.se.com/ww/en/download/document/SEVD-2021-257-03/nvdVendor Advisory
News mentions
0No linked articles in our index yet.