CVE-2026-9650

EUVD-2026-39430
CWE-522 Insufficiently Protected Credentials vulnerability that could cause unauthorized access and exposure of sensitive information when unauthenticated attacker accesses credentials stored within firmware or system files. With this credential an attacker could subsequently compromise the device if they have physical access to the device.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 15.05%
Affected Products (NVD)
VendorProductVersion
schneider-electriceasylogic_t150_firmware
𝑥
< 11.06.32
schneider-electricsaitel_dp_firmware
𝑥
< 11.06.38
𝑥
= Vulnerable software versions