security1 publisher
Schneider's PowerChute Serial Shutdown accepts unlimited login guesses when redirect handling is off
CVE-2026-13348 lets an attacker try passwords against the software that shuts servers down gracefully, as fast as the network allows. Schneider fixed it in version 1.6. CISA's advisory lists 1.6 as affected too.
Publishers:cisa.gov
Reality
- Evidence74
- Adoption
- Insufficient
- Hype gap−8
- Incentives62
- Confidence70