{"api_version":"v1","generated_at":"2026-10-10T09:20:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-schneider-electric-ecostruxure-power-monitoring-expert-d37391e43ea6","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"EcoStruxure Power Monitoring Expert","next_cursor":null,"observations":[{"affected":"All versions \u2013 prior to application of Hotfix-145271","affected_versions_present":true,"cve_id":"CVE-2023-5391","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-5391","fixed":"A Hotfix for this vulnerability is available by contacting Contact Schneider Electric\u2019s Customer Care Center. The Hotfix can be applied to versions PME 2023, 2022, and 2021, the versions currently in support on the date of this disclosure. Previous versions, please contact customer care to inquire about upgrade paths.","last_modified":"2025-02-27T20:46:31.823Z","patch_url":"https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-283-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-283-02.pdf","primary_source":"","published":"2023-10-04T18:13:00.746Z"},{"affected":"All \u2264 PME 2022","affected_versions_present":true,"cve_id":"CVE-2023-28003","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-28003","fixed":"EcoStruxure\u2122 Power Monitoring Expert 2022 CU1 includes a fix for this vulnerability and is available for download here: https://ecoxpert.se.com/software-center/power-monitoring-expert/power-monitoring-expert-2022","last_modified":"2025-02-05T21:23:55.818Z","patch_url":"https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-073-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-073-01.pdf","primary_source":"","published":"2023-04-18T20:43:50.362Z"}],"source_generated_at":"2026-10-10T06:21:41.304Z","vendor":"Schneider Electric"}}
