CVE-2025-1058: Schneider Electric Asco 5310 Single-Channel Remote Annunciator
High severity, CVSS 8.1. EPSS: 0.2% chance of exploitation in the next 30 days.
CWE-494: Download of Code Without Integrity Check vulnerability exists that could render the device inoperable when malicious firmware is downloaded.
Affected products
- Schneider Electric Asco 5310 Single-Channel Remote Annunciator: any version
- Schneider Electric Asco 5350 Eight Channel Remote Annunciator: any version
Published 2025-02-13. Last modified 2026-06-17.