[Control systems] Schneider Electric security advisory (AV26-871)
Canada's Cyber Centre relayed Schneider Electric advisories for vulnerabilities in NetBotz 5-750/755 (5.5.2 and prior) and PowerChute Serial Shutdown (1.5 and prior).
The Canadian Centre for Cyber Security issued control-systems advisory AV26-871 noting Schneider Electric products affected by vulnerabilities as of September 1, 2026. Affected products include NetBotz 5-750/755 versions 5.5.2 and prior, and PowerChute Serial Shutdown versions 1.5 and prior, the latter with an improper restriction of excessive authentication attempts flaw. Administrators are urged to review Schneider Electric's security notifications and apply the suggested mitigations and updates.
- NetBotz 5-750/755 versions 5.5.2 and prior affected by multiple vulnerabilities.
- PowerChute Serial Shutdown 1.5 and prior has improper restriction of excessive authentication attempts.
- Cyber Centre urges users to apply Schneider Electric updates and mitigations.
Full article88 words · extracted from cyber.gc.ca · click to collapse

Serial Number: AV26-871
Date: September 2, 2026
As of September 1, 2026, Schneider Electric is affected by vulnerabilities in the following products:
NetBotz 5 - 750/755
Versions prior to or equal to 5.5.2
PowerChute Serial Shutdown
Versions prior to or equal to 1.5
The Cyber Centre encourages users and administrators to review the provided web links, perform the suggested mitigations and apply the necessary updates.
Multiple Vulnerabilities on NetBotz 5 - 750/755 Products
Improper Restriction of Excessive Authentication Attempts vulnerability on PowerChute™ Serial Shutdown
Schneider Electric Security Notifications
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/control-systems-schneider-electric-security-advisory-av26-871