CVE-2026-0667Patch

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-754

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 2d ago at 2 mentions (2026-03-18); latest day: 1
  • 5 total mentions across 4 days

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-02-12: 1Mentions · 2026-03-18: 2Mentions · 2026-03-19: 1Mentions · 2026-07-29: 1Patch / Workaround · 2026-03-18: 2Patch / Workaround · 2026-07-29: 1Technical Details · 2026-03-18: 2Technical Details · 2026-07-29: 102-1203-1803-1907-29
Signal classification3 categories
Patch
360.0%
Disclosure
120.0%
General
120.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-02-121
Disclosure1
2026-03-182
Patch2
2026-03-191
General1
2026-07-291
Patch1
Full discourse5 posts
  • Gray Hats@the_yellow_fall
    Patch

    Schneider Electric patches a critical 9.8 CVSS flaw (CVE-2026-0667) in SCADAPack RTUs and EcoStruxure Data Center Expert. Update to secure your systems. #SchneiderElectric #CVE #SCADASecurity #CyberSecurity #ICSSecurity #InfoSec #CriticalInfrastructure https://securityonline.info/blackout-threat-critical-schneider-electric-scada-data-center-vulnerabilities/ https://t.co/6VaILWrqoi

    Post summary

    The tweet announces Schneider Electric’s patch for the critical CVE‑2026‑0667 affecting SCADAPack RTUs and EcoStruxure Data Center Expert and urges users to update.

    03133764
    10.7K followersView on X
  • Upwind Security MDR@UpwindMDR
    Patch

    🚨Critical - Schneider Electric SCADAPack Modbus TCP Exception Handling RCE (CVE-2026-0667) Improper exceptional-condition checks in the Modbus TCP stack of Schneider Electric SCADAPack/RemoteConnect can be triggered via crafted Modbus TCP requests, leading to memory corruption and arbitrary code execution, DoS, and loss of confidentiality/integrity over the network. 👉Affected: Schneider Electric SCADAPack 47x/47xi < R3.4.2 (firmware < 9.12.2), SCADAPack 57x (all versions), RemoteConnect < R3.4.2 | Upgrade to R3.4.2 (SCADAPack 47x/47xi firmware 9.12.2)

    Post summary

    Schneider Electric announced CVE‑2026‑0667, an RCE via Modbus TCP exception handling, and advised upgrading to firmware R3.4.2 (9.12.2) to remediate the issue.

    00000107
    274 followersView on X
  • Eyal Estrin ☁️@eyalestrin
    General

    Critical 9.8 CVSS Schneider Electric Flaw Exposes SCADA and Data Center Systems (CVE-2026-0667) http://dlvr.it/TRb5k0 #patchmanagement

    Post summary

    The tweet announces a severe CVE‑2026‑0667 with a 9.8 CVSS score affecting Schneider Electric SCADA and data center systems, but provides no details on exploitation, fixes, or technical specifics.

    0000074
    2.0K followersView on X
  • StrongKeep Cybersecurity@StrongKeepCyber
    Patch

    SMBs with Schneider Electric SCADAPack RTUs: a critical vulnerability (CVE-2026-0667) could allow unauthorized code execution over Modbus TCP. Patch to R3.4.2 (firmware 9.12.2) or use mitigations like network segmentation and RTU firewall. Source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-076-02

    Post summary

    The advisory announces CVE‑2026‑0667, details its exploit vector (unauthorized code execution via Modbus TCP), and provides a specific firmware patch along with mitigations to protect vulnerable Schneider Electric SCADAPack RTUs.

    0000068
    2 followersView on X
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos Schneider Electric ❗ CVE-2026-1227 ❗ CVE-2026-1226 ❗ CVE-2026-0667 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-schneider-electric-2/ https://t.co/7qYUcLOnRq

    Post summary

    The post announces three new CVEs affecting Schneider Electric products and directs readers to a link for further information.

    00000104
    6.6K followersView on X

Explore more