The vendor explicitly identifies these products as affected by this CVE.
- Schneider Electric PowerLogic™ HDPM6000 version 0.58.6 and prior
- Summary
- A CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial of service or remote code execution.
- Remediation
- Version 0.58.7 or newer of PowerLogic™ HDPM6000 includes a fix for this vulnerability and is available for download here: https://www.se.com/ww/en/product-range/8297113-powerlogichdpm6000/#software-and-firmware
