CVE-2026-50032: Mz Automation LIBIEC61850
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
A NULL pointer dereference in the MMS Write Named Variable List handler, which may allow a network adjacent attacker to crash the server by sending a WriteRequest with an empty listOfData field.
Affected products
- Mz Automation LIBIEC61850: from 1.0.0, up to and including 1.6.1
Published 2026-07-23. Last modified 2026-07-30.