cbcvebase.
CVE-2026-9651
published 2026-06-25

CVE-2026-9651: CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential account…

PriorityP427medium6.7CVSS 4.0
AVLACLATNPRHUINVCHVINVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.11%
1.3th percentile
CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential account compromise when an attacker with privileged local access reads improperly protected system files.

Affected

2 ranges
VendorProductVersion rangeFixed in
schneider_electriceasylogic_t150_remote_terminal_unit_controller
schneider_electricsaitel_dp_remote_terminal_unit_controller
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.