Schneider Electric EcoStruxure Process Expert Privilege Escalation Vulnerability

Vulnerability

A vulnerability allowing privilege escalation has been identified in Schneider Electric's EcoStruxure Process Expert and EcoStruxure Process Expert for AVEVA System Platform. This vulnerability arises from incorrect default permissions that could enable a local user with normal privileges to modify executable service binaries in the installation folder. Upon restarting the service, these modifications could be exploited to gain elevated privileges through a reverse shell.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights and potentially execute arbitrary commands with those privileges.

Remediation

Users of EcoStruxure Process Expert should upgrade to version 2025, which includes a fix for this vulnerability. For EcoStruxure Process Expert for AVEVA System Platform, Schneider Electric is developing a remediation plan for future versions that will address this vulnerability. In the meantime, users should apply application whitelisting at the system level to allow execution of authenticated applications and restrict access to the system to only necessary users.

Added: Jan 29, 2026, 4:19 PM
Updated: Jan 29, 2026, 4:37 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
5.0
exploitability
3.5
remediation
7.9
relevance
2.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.