CVE Database
/

CVE-2025-13957

Back to search

CVE-2025-13957

Published: Mar 10, 2026

Modified: Mar 10, 2026

PUBLISHED

Description

CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause information disclosure and remote code execution when SOCKS Proxy is enabled, and administrator credentials and PostgreSQL database credentials are known. SOCKS Proxy is disabled by default.

VendorProductVersions

Schneider Electric

EcoStruxure™ IT Data Center Expert (Formerly known as StruxureWare Data Center Expert)

affected
v9.0 and prior

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now