
🔴 Schneider Electric SCADAPack RTUs vulnerable to credential theft across critical infrastructure Schneider Electric disclosed a vulnerability (CVE-2026-81861) affecting SCADAPack x70 Remote Terminal Units deployed worldwide in critical manufacturing and energy sectors. The flaw involves insufficiently protected credentials in the Secure Lock functionality, enabling unauthorized RTU configuration access and potential loss of confidentiality. Affected models: SCADAPack 47x, 47xi, 47xd, 470R, 57x, 3xx, and 32 — all versions compromised. • Replace Secure Lock with Role-Based Access Control (RBAC), documented in SCADAPack security guidelines


