CVE-2025-48017: Schweitzer Engineering Laboratories Sel-5056 Software-Defined Network Flow Controller
Critical severity, CVSS 9.0. EPSS: 0.4% chance of exploitation in the next 30 days.
Improper limitation of pathname in Circuit Provisioning and File Import applications allows modification and uploading of files
Affected products
- Schweitzer Engineering Laboratories Sel-5056 Software-Defined Network Flow Controller: before 2.16.0 (fixed in 2.16.0)
Published 2025-05-20. Last modified 2026-06-17.