CVE-2025-11739
Schneider Electric EcoStruxure™ Power Monitoring Expert (PME), EcoStruxure™ Power Operation (EPO) Advanced Reporting and Dashboards Module, ecostruxure power monitoring expert
CWE‑502: Deserialization of Untrusted Data vulnerability exists that could cause arbitrary code execution with administrative privileges when a locally authenticated attacker sends a crafted data stream, triggering unsafe deserialization.
- CVSS
- 8.5
- EPSS
- 0.19% 8.36% percentile
- CISA KEV
- Not listed
- Published
- 2026.03.11