Schneider Electric · Imt25 Magnetic Flow Dtm · CVE-2015-3977
**Name of the Vulnerable Software and Affected Versions**
Schneider Electric IMT25 Magnetic Flow DTM versions prior to 1.500.004
**Description**
The issue allows remote authenticated users to execute arbitrary code or cause a denial of service due to memory corruption via a crafted HART reply. This is a result of a buffer overflow in the HART Protocol.
**Recommendations**
For versions prior to 1.500.004, update to version 1.500.004 or later to resolve the issue. As a temporary workaround, consider restricting access to the HART Protocol to minimize the risk of exploitation.