Schneider Electric EasyLogic T150 and Saitel DP RTU

MonitorCVSS 7.5ICS-CERT ICSA-26-181-04Jun 9, 2026
Schneider ElectricEnergyTransportation
Attack path
Attack VectorNetwork
Auth RequiredNone
ComplexityLow
User InteractionNone needed
Summary

Credential storage vulnerability in EasyLogic T150 (formerly Saitel DR) and Saitel DP Remote Terminal Units. The devices store credentials in a manner that allows extraction by an attacker with physical access. Successful extraction could enable unauthorized remote access to the device and compromise of device integrity and network operations. CWEs: CWE-522 (Insufficient Protection of Credentials), CWE-732 (Incorrect Permission Assignment).

What this means
What could happen
An attacker with physical access to the device could harvest stored credentials, which could then be used to gain unauthorized access to the RTU and alter its configuration, sensor readings, or control logic. This could disrupt energy distribution or transportation control operations.
Who's at risk
Energy utilities (distribution and transmission substations), transportation systems (railway control), and any organization operating medium or high voltage distribution networks that use Schneider Electric EasyLogic T150 or Saitel DP Remote Terminal Units for process control, data acquisition, and automation.
How it could be exploited
An attacker with physical access to the device can extract stored credentials from memory or configuration storage. Once credentials are harvested, the attacker can use them to remotely access and compromise the RTU's functionality, potentially modifying setpoints, disabling alarms, or redirecting commands.
Prerequisites
  • Physical access to the device
  • Ability to extract or read stored credentials from device memory or configuration
no authentication required for credential extractionrequires physical access to deviceaffects critical infrastructure (energy, transportation)low EPSS score (0.3%)
Exploitability
Unlikely to be exploited — EPSS score 0.4%
Affected products (4)
4 with fix
ProductAffected VersionsFix Status
EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller≤ 11.06.30Fix available
EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller≤ 11.06.31Fix available
Saitel DP Remote Terminal Unit & Controller≤ 11.06.35Fix available
Saitel DP Remote Terminal Unit & Controller≤ 11.06.37Fix available
Remediation & Mitigation
0/3
Schedule — requires maintenance window
0/2

Patching may require device reboot — plan for process interruption

EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller
HOTFIXUpdate EasyLogic T150 (formerly Saitel DR) to firmware version 11.06.32 or later
All products
HOTFIXUpdate Saitel DP to firmware version 11.06.38 or later
Long-term hardening
0/1
HARDENINGRestrict physical access to RTU devices through locked cabinets, access control, or physical security monitoring
API: /api/v1/advisories/25743d8b-6fe1-43b3-9c3a-09a9b72795ad

Get OT security insights every Tuesday

Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.