CVE-2026-2400
EUVD-2026-2228414.04.2026, 16:16
CWE-93 Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability exists that could cause application user credentials to reset when a Web Admin user alters the POST /setPCBEDesc request payload.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| schneider-electric | powerchute_serial_shutdown | 𝑥 < 1.5 |
𝑥
= Vulnerable software versions