Known Vulnerabilities for Custom Reports by Schneider-electric
Listed below are 8 of the newest known vulnerabilities associated with "Custom Reports" by "Schneider-electric".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-2432 json | The CM Custom Reports – Flexible reporting to track what matters most plugin for WordPress is vulnerable to Stored Cross-Si... | Not Provided | 2026-03-20 | 2026-04-08 |
| CVE-2026-2431 json | The CM Custom Reports plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'date_from' and 'date_to' ... | Not Provided | 2026-03-07 | 2026-04-08 |
| CVE-2023-27984 json | A CWE-20: Improper Input Validation vulnerability exists in Custom Reports that could cause a macro to be executed, potential... | 8.8 - HIGH | 2023-03-21 | 2023-03-24 |
| CVE-2023-27983 json | A CWE-306: Missing Authentication for Critical Function vulnerability exists in the Data Server TCP interface that could allo... | 5.3 - MEDIUM | 2023-03-21 | 2023-03-28 |
| CVE-2023-27982 json | A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists in the Data Server that could cause manipulati... | 8.8 - HIGH | 2023-03-21 | 2023-03-24 |
| CVE-2023-27981 json | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists in Custom Reports that could cause... | 8.8 - HIGH | 2023-03-21 | 2023-03-24 |
| CVE-2023-27980 json | A CWE-306: Missing Authentication for Critical Function vulnerability exists in the Data Server TCP interface that could allo... | 8.8 - HIGH | 2023-03-21 | 2023-03-24 |
| CVE-2023-27979 json | A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists in the Data Server that could allow the renami... | 6.5 - MEDIUM | 2023-03-21 | 2023-05-24 |
| CVE-2023-27978 json | A CWE-502: Deserialization of Untrusted Data vulnerability exists in the Dashboard module that could cause an interpretation ... | 7.8 - HIGH | 2023-03-21 | 2023-03-24 |
| CVE-2023-27977 json | A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists in the Data Server that could cause access to ... | 5.3 - MEDIUM | 2023-03-21 | 2023-05-15 |