Critical severity9.8NVD Advisory· Published Nov 13, 2024· Updated Jun 17, 2026
CVE-2024-10575
CVE-2024-10575
Description
CWE-862: Missing Authorization vulnerability exists that could cause unauthorized access when enabled on the network and potentially impacting connected devices.
Affected products
5cpe:2.3:a:schneider-electric:ecostruxure_it_gateway:1.21.0.6:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:schneider-electric:ecostruxure_it_gateway:1.21.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:schneider-electric:ecostruxure_it_gateway:1.22.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:schneider-electric:ecostruxure_it_gateway:1.22.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:schneider-electric:ecostruxure_it_gateway:1.23.0.4:*:*:*:*:*:*:*
- (no CPE)range: Version 1.21.0.6
Patches
Vulnerability mechanics
References
1- download.schneider-electric.com/doc/SEVD-2024-317-04/SEVD-2024-317-04.pdfnvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.