Known vulnerabilities in PowerChute Serial Shutdown
Vendor:
Schneider Electric
Software:
PowerChute Serial Shutdown
Software CPE:
cpe:2.3:h:schneider_electric:powerchute_serial_shutdown:*:*:*:*:*:*:*:*
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.7
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU119889 - Incorrect Default Permissions CVE-2025-11567 |
CWE-276 | Low | 1.4 | 12.12.2025 |
SB2025121218 |
||
| #VU119888 - Improper Restriction of Excessive Authentication Attempts CVE-2025-11566 |
CWE-307 | Low | 1.4 | 12.12.2025 |
SB2025121218 |
||
| #VU119887 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-11565 |
CWE-22 | Low | 1.4 | 12.12.2025 |
SB2025121218 |
||
| #VU102543 - Improper Authentication CVE-2024-10511 |
CWE-287 | Medium | 1.3 | 13.01.2025 |
SB2025011309 |