CVE-2026-6865

N/A

View CSAF Summary Successful exploitation this vulnerability could allow an attacker to gain unauthorized access to sensitive files The following versions of Schneider Electric EasyLogic T150 and S...

Affects 0 products across 4 vendors.

BCS3.88
CVSS v47.1
EPSS0.3%
Percentile22th
PatchUnknown
CWE Weakness Definitions
CWE-22: Path Traversal

Attacker manipulates file path inputs to access files outside the intended directory.

Related Attack Patterns (CAPEC)
CAPEC-64 Using Slashes and URL Encoding Combined to Bypass Validation Logic
via CWE-22
CAPEC-76 Manipulating Web Input to File System Calls
via CWE-22
CAPEC-78 Using Escaped Slashes in Alternate Encoding
via CWE-22
CAPEC-79 Using Slashes in Alternate Encoding
via CWE-22
CAPEC-126 Path Traversal
via CWE-22

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

A Path Traversal vulnerability (CWE-22) exists in the server-side file path processing, which could allow unauthorized access to sensitive files if user-supplied input is not properly validated.

BSID: BS-2026-GLOBAL-154549-I • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2026-6865?
A Path Traversal vulnerability (CWE-22) exists in the server-side file path processing, which could allow unauthorized access to sensitive files if user-supplied input is not properly validated.
Is CVE-2026-6865 actively exploited?
No confirmed active exploitation of CVE-2026-6865 as of 2026-06-22.
How do I remediate CVE-2026-6865?
Priority: HIGH.
What systems are affected by CVE-2026-6865?
CVE-2026-6865 affects: Files, Processing, Schneider-Electric, Wolfram Schneider.
Vulnerability Details
CVE IDCVE-2026-6865
BSIDBS-2026-GLOBAL-154549-I BreachSpider Global ID
Published2026-06-18
Last Modified2026-06-18
ICS Relevance70%
Weakness (CWE)
Verticals
ICS-OT
SourceNVD
Official Description

View CSAF Summary Successful exploitation this vulnerability could allow an attacker to gain unauthorized access to sensitive files The following versions of Schneider Electric EasyLogic T150 and Saitel DP are affected: Schneider Electric EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller Firmware installed on Schneider Electric EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller (All versions) vers:semver/<=11.06.31 (CVE-2026-6865) Schneider Electric Saitel

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

An attacker could exploit this vulnerability by manipulating file paths in requests to access files outside the intended directory, potentially leading to sensitive data exposure.

Exploitation Likelihood: MEDIUM

Affected Products
VendorProductFixed Version
Files &mdash;
Processing &mdash;
Schneider-Electric &mdash;
Wolfram Schneider &mdash;
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: July 2026 | Threat Age: 37 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceMEDIUM
Enriched At2026-05-24
Related CVEs affecting Files
CVE-2025-12539 10.0 The TNC Toolbox: Web Performance plugin for WordPress is vulnerable to Sensit... CVE-2025-48148 10.0 Unrestricted Upload of File with Dangerous Type vulnerability in StoreKeeper ... CVE-2026-34909 10.0 A malicious actor with access to the network could exploit a Path Traversal v... CVE-1999-0561 10.0 IIS has the #exec function enabled for Server Side Include (SSI) files. CVE-1999-0937 10.0 BNBForm allows remote attackers to read arbitrary files via the automessage h...
View all Files CVEs →

ICS/OT Vulnerability Intelligence for Your Environment

BreachSpider monitors 353,228 CVEs across ICS/OT vendors. SAGE-enriched alerts with virtual patches, NERC-CIP mapping, and PSIRT contacts delivered to your SIEM in minutes.

Join free →