← Back to home
ICSA-26-015-10  ·  Published 2026-03-17  ·  View on CISA ICS-CERT ↗

Schneider Electric EcoStruxure Power Build Rapsody (Update A)

CVSS 7.8 HIGH

Remediations

  • Versions FR V2.8.1.0401, INT V2.8.6.200, and ES V2.8.5.0301 of EcoStruxure Power Build Rapsody includes a fix for the CVE-2025-13844 vulnerability and is available for download here: https://www.se.com/ww/en/product-country-selector/?pageType=product-range&sourceId=2309 Restart the service after installing the new version.
  • Versions BEL(NL) V2.8.3.0201 and BEL(FR) V2.8.8.0201 of EcoStruxure Power Build Rapsody includes a fix for the CVE-2025-13844 vulnerability, reach out to the Schneider Electric Customer Care Center for assistance.
  • If users choose not to apply the remediation provided above, they should immediately apply the following mitigations to reduce the risk of exploit: For CVE-2025-13844: - Only open projects from trusted sources - Ensure use of malware scans before opening any externally created Project
  • Versions FR V2.8.1.0401, ESP V2.8.5.0301, PT V2.8.7.0101, INT(EN) V2.8.4.0401, and NL V2.8.2.000 of EcoStruxure Power Build Rapsody includes a fix for the CVE-2025-13845 vulnerability and are available for download here: https://www.se.com/ww/en/product-country-selector/?pageType=product-range&sourceId=2309 Restart the service after installing the new version.
  • Versions BEL(NL)V2.8.3.0201 and BEL(FR) V2.8.8.0201 of EcoStruxure Power Build Rapsody include a fix for the CVE-2025-13845 vulnerability, reach out to the Schneider Electric Customer Care Center for assistance.
  • If users choose not to apply the remediation provided above, they should immediately apply the following mitigations to reduce the risk of exploit: For CVE-2025-13845: - Only open projects from trusted sources - Ensure use of malware scans before opening any externally created Project

Affected Vendors

Schneider Electric

Affected Products (21)

Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.1_FR
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.1.0401_FR
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.6_INT
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.6.200_INT
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.5_ES
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.5.0301_ES
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.3_BEL(NL)
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.3.0201_BELNL
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.8_BEL(FR)
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.8.0201_BELFR
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.1.0300_FR
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.5.0200_ES
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.7.0100_PT
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.7.0101_PT
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.8.0100_BEL(FR)
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.3.0100_BEL(EN)
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.3.0201_BELEN
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.4.0300_INT(EN)
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.4.0401_INTEN
Schneider Electric · EcoStruxure Power Build Rapsody software vers:generic/<=2.8.2.0000_NL
Schneider Electric · EcoStruxure Power Build Rapsody software 2.8.2.000_NL

Affected Sectors

Energy, Critical Manufacturing, Commercial Facilities

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more