CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification,… (CVE-2026-14354)
CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.
AI Analysis
Technical Summary
This vulnerability (CVE-2026-14354) in Schneider Electric's EcoStruxure™ Cybersecurity Admin Expert involves insufficient protection of credentials (CWE-522). It affects versions up to and including 4.2.0. No official patch or remediation has been documented. Schneider Electric CPCERT advises implementing cybersecurity best practices such as isolating control networks, physical security controls, restricting programming software network connections, scanning removable media, and using secure remote access methods like VPNs. The vendor has not indicated any active exploitation or provided a direct fix, emphasizing preventive controls instead.
Potential Impact
The vulnerability could allow unauthorized access or misuse of credentials due to insufficient protection, potentially compromising the security of the EcoStruxure™ Cybersecurity Admin Expert environment. However, no known exploits in the wild have been reported. The impact is mitigated by following recommended cybersecurity best practices.
Mitigation Recommendations
No official patch or fix is currently available for this vulnerability. Schneider Electric recommends strictly following their cybersecurity best practices, including isolating control and safety system networks behind firewalls, enforcing physical access controls, locking controllers, restricting programming software network connections, scanning removable media before use, minimizing network exposure, and using secure remote access methods such as updated VPNs. These measures are critical to reduce risk until an official fix is provided. Patch status is not yet confirmed — check the vendor advisory SEVD-2026-195-02 for current remediation guidance.
CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification,… (CVE-2026-14354)
Description
CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.
CVSS v4.0
Affected software
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability (CVE-2026-14354) in Schneider Electric's EcoStruxure™ Cybersecurity Admin Expert involves insufficient protection of credentials (CWE-522). It affects versions up to and including 4.2.0. No official patch or remediation has been documented. Schneider Electric CPCERT advises implementing cybersecurity best practices such as isolating control networks, physical security controls, restricting programming software network connections, scanning removable media, and using secure remote access methods like VPNs. The vendor has not indicated any active exploitation or provided a direct fix, emphasizing preventive controls instead.
Potential Impact
The vulnerability could allow unauthorized access or misuse of credentials due to insufficient protection, potentially compromising the security of the EcoStruxure™ Cybersecurity Admin Expert environment. However, no known exploits in the wild have been reported. The impact is mitigated by following recommended cybersecurity best practices.
Mitigation Recommendations
No official patch or fix is currently available for this vulnerability. Schneider Electric recommends strictly following their cybersecurity best practices, including isolating control and safety system networks behind firewalls, enforcing physical access controls, locking controllers, restricting programming software network connections, scanning removable media before use, minimizing network exposure, and using secure remote access methods such as updated VPNs. These measures are critical to reduce risk until an official fix is provided. Patch status is not yet confirmed — check the vendor advisory SEVD-2026-195-02 for current remediation guidance.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- Schneider Electric CPCERT
- Advisory Id
- SEVD-2026-195-02
- Cve Count
- 1
- Additional Cves
- []
- Cvss Version
- null
Threat ID: 6a55ff4968715ace432efb9b
Added to database: 07/14/2026, 09:20:09 UTC
Last enriched: 07/29/2026, 21:02:45 UTC
Last updated: 08/28/2026, 22:52:08 UTC
Views: 84
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.