Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
CVE-LINKED INVENTORY3 SECURITY RECORDS

Schneider Electric

EcoStruxure Power Monitoring Expert (PME)

Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.

Lifecycle evidence status

This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.

A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.

CVE-observed version history

CVEPublishedAffected versionsFixed version informationPublisher evidence
CVE-2024-9005 8 Oct 2024 Version 2022 and prior Hotfix_75031_PME2022 available for EcoStruxure™ Power Monitoring Expert (PME) that includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center https://www.se.com/us/en/work/support/ to download this hotfix. Update reference ↗
CVE-2023-5987 15 Nov 2023 Version 2020 CU2 and prior; Version 2021 CU1 and prior; Advanced Reporting and Dashboards Module 2021 prior to CU2 for EcoStruxure Power Operation 2021; Advanced Reporting and Dashboards Module 2020 prior to CU3; EcoStruxure Power SCADA Operation (PSO) 2020 or 2020 R2 Version 2021 CU2 of EcoStruxure™ Power Monitoring Expert (PME) includes a fix for these vulnerabilities and is available for download here: https://ecoxpert.se.com/software-center/power-monitoring-expert/power-monitoring-expert-2021 Update reference ↗
CVE-2023-5986 15 Nov 2023 Version 2020 CU2 and prior; Version 2021 CU1 and prior; Advanced Reporting and Dashboards Module 2021 prior to CU2 for EcoStruxure Power Operation 2021; Advanced Reporting and Dashboards Module 2020 prior to CU3; EcoStruxure Power SCADA Operation (PSO) 2020 or 2020 R2 Version 2021 CU2 of EcoStruxure™ Power Monitoring Expert (PME) includes a fix for these vulnerabilities and is available for download here: https://ecoxpert.se.com/software-center/power-monitoring-expert/power-monitoring-expert-2021 Update reference ↗

How this record is maintained

The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.