CVE-2026-8045Active Exploitation(schneider-electric / struxureware_data_center_expert)

LOWCVSS 6.5 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Prioritize remediation for schneider-electric struxureware_data_center_expert systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists that could cause information disclosure of server-side file contents when an attacker with a Data Center Expert user account submits crafted XML payloads to SOAP service endpoints.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-611

Priority

LOW

Exploitation

ACTIVE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • struxureware_data_center_expert

Threat summary

  • Active exploitation appears in 1 classified signals
  • 1 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
struxureware_data_center_expert

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-07-01: 1Active Exploitation · 2026-07-01: 1Technical Details · 2026-07-01: 107-01
Signal classification1 categories
Active Exploitation
1100.0%
Referenced assets1 URL
Full discourse1 post
  • Aviatrix Threat Research Center@aviatrixtrc
    Active Exploitation

    TRC analysis shows attackers exploited CVE-2026-8045, an XXE vulnerability in Schneider Electric's EcoStruxure IT Data Center Expert, to access sensitive server files and escalate privileges. The compromise enabled lateral movement across the network infrastructure. Runtime segmentation could help contain such post-exploitation activity within data center environments. #CloudSecurity 🔗 Full TRC analysis: https://aviatrix.ai/threat-research-center/schneider-electric-ecostruxure-it-data-center-expert-cve-2026-8045

    Post summary

    Travis Research Center reports that attackers actively exploited CVE-2026-8045, an XXE flaw in Schneider Electric's EcoStruxure IT, to gain file access, elevate privileges, and move laterally, with a recommendation to use runtime segmentation to limit spread.

    0000061
    1.9K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appschneider-electricstruxureware_data_center_expert---

Explore more