CVE-2024-37036: Schneider Electric Sage Rtu Firmware

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

CWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass when sending a malformed POST request and particular configuration parameters are set.

Affected products

Published 2024-06-12. Last modified 2026-06-17.