CVE-2024-5560: Schneider Electric Sage Rtu Firmware

High severity, CVSS 7.5. EPSS: 0.9% chance of exploitation in the next 30 days.

CWE-125: Out-of-bounds Read vulnerability exists that could cause denial of service of the device’s web interface when an attacker sends a specially crafted HTTP request.

Affected products

  • Schneider Electric Sage Rtu Firmware: before c3414-500-s02k5_p9 (fixed in c3414-500-s02k5_p9)

Published 2024-06-12. Last modified 2026-06-17.