← Back to Feed

Schneider Electric IGSS

CVE-2026-12927

July 30, 2026 · CISA (US-CERT) · Severity: CRITICAL

Schneider Electric disclosed a vulnerability in its IGSS Definition module for the IGSS SCADA system. An out-of-bounds write flaw exists when importing a malicious CGF file, risking data loss or arbitrary code execution. The vendor recommends updating to version 18.0.0.26125.

Key Takeaways

  • Out-of-bounds write vulnerability in Schneider Electric IGSS Definition module.
  • Importing a malicious CGF file could cause data loss or code execution.
  • Update to version 18.0.0.26125 to remediate the issue.
☕ Buy a Coffee