High severityNVD Advisory· Published Jun 9, 2026· Updated Jun 9, 2026
CVE-2026-8045
CVE-2026-8045
Description
CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists that could cause information disclosure of server-side file contents when an attacker with a Data Center Expert user account submits crafted XML payloads to SOAP service endpoints.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
1- Schneider Electric EcoStruxure IT Data Center ExpertCISA ICS Advisories