CVE-2026-9717EPSS p65.0%

CVE-2026-9717CVE-2026-9717

schneider-electric / powerlogic_p7_firmware

Description

CWE-78 Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could allow unauthorized execution of commands with elevated privileges, impacting system integrity, confidentiality, and availability when a privileged authenticated user interacts with a vulnerable network-exposed service.

Scoring

CVSS 7.2 ()
VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS1.19% probability of exploitation · percentile 65.0% · 2026-08-11T12:00:17Z
Last modified2026-07-01
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.