CVE-2024-5559: Medium severity Schneider-electric Powerlogic P5 Firmware vulnerability
CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists that could cause denial of service, device reboot, or an attacker gaining full control of the relay when a specially crafted reset token is entered into the front panel of the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5559?
CVE-2024-5559 is classified as a high severity vulnerability due to its potential for causing device reboot and denial of service.
How do I fix CVE-2024-5559?
To fix CVE-2024-5559, update the Schneider Electric Powerlogic P5 firmware to version 01.500.105 or later.
What type of attack does CVE-2024-5559 enable?
CVE-2024-5559 enables attackers to gain full control of the relay upon entering a specially crafted reset token.
Which devices are affected by CVE-2024-5559?
CVE-2024-5559 affects the Schneider Electric Powerlogic P5 devices running firmware versions up to 01.500.104.
What are the potential risks of CVE-2024-5559?
The potential risks of CVE-2024-5559 include device boot issues, denial of service, and unauthorized control of critical systems.