CVE-2026-9717
Severity CVSS v4.0:
HIGH
Type:
CWE-78
OS Command Injections
Publication date:
25/06/2026
Last modified:
01/07/2026
Description
CWE-78 Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could allow unauthorized execution of commands with elevated privileges, impacting system integrity, confidentiality, and availability when a privileged authenticated user interacts with a vulnerable network-exposed service.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH
Base Score 3.x
7.20
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:schneider-electric:powerlogic_p7_firmware:*:*:*:*:*:*:*:* | 02.004.001.000 (excluding) | |
| cpe:2.3:h:schneider-electric:powerlogic_p7:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



