← Back to Feed
Schneider Electric IGSS
CVE-2026-12927
July 30, 2026 · CISA (US-CERT) · Severity: CRITICAL
Schneider Electric disclosed a vulnerability in its IGSS Definition module for the IGSS SCADA system. An out-of-bounds write flaw exists when importing a malicious CGF file, risking data loss or arbitrary code execution. The vendor recommends updating to version 18.0.0.26125.
Key Takeaways
- Out-of-bounds write vulnerability in Schneider Electric IGSS Definition module.
- Importing a malicious CGF file could cause data loss or code execution.
- Update to version 18.0.0.26125 to remediate the issue.