SESU Security Notification CVE-2025-5296
This document details a high-severity vulnerability (CVE-2025-5296) in the Schneider Electric Software Update (SESU) product, specifically a CWE-59 "Link Following" flaw that could allow a low-privileged attacker to write arbitrary data to protected locations. The notification provides remediation via SESU version 3.0.12 and lists affected products, including EcoStruxure, Harmony, and PowerLogic series, along with mitigations for customers who cannot immediately apply the patch.
Failed to load PDF
Download insteadYou might also like
Electrical Asset Lifecycle Management Guide
2 pages
MV15B-24/MV15B-230 3-Point Floating Actuator for Valves
3 pages
EPDU1010B-SCH Easy PDU Basic Rack Power Distribution Unit Specifications
2 pages
APC Charge Mobile Power Supply for Surface Hub 2 Safety Data Sheet
16 pages
RXV 7253, RMV 7653, REV 7353 Rotary Actuators Datasheet
4 pages
EcoStruxure Modular Data Center ISO 20' Technical Specification
34 pages
SpaceLogic SLP Series Multisensor Platform Specification Sheet
4 pages
691 Series Vertical Single Socket Outlets and Clip-on Cover Plates Product Data
2 pages
TAC I/A Series MicroNet MNL-50 Controller Specifications
4 pages
APC Basic Rack PDU Specifications
2 pages