PT-2025-46536 · Schneider Electric · Spectrum Power 4

Published

2025-11-11

·

Updated

2025-11-11

·

CVE-2024-32011

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Spectrum Power 4 versions prior to 4.70 SP12 Update 2
Description The application is susceptible to arbitrary command execution through the user interface. This interface is accessible over the network, enabling command execution with administrative application user privileges.
Recommendations Update to version 4.70 SP12 Update 2 or later.

Fix

Weakness Enumeration

Related Identifiers

BDU:2025-14345
CVE-2024-32011

Affected Products

Spectrum Power 4