Back to search
CVE-2025-9996
Published: Sep 9, 2025
Modified: Sep 10, 2025
PUBLISHED
Description
CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause the execution of any shell command when executing a netstat command using BLMon Console in an SSH session.
| Vendor | Product | Versions |
|---|---|---|
Schneider Electric | Saitel DR RTU | affected all versions - <= 11.06.29 |
Schneider Electric | Saitel DP RTU | affected all versions - <= 11.06.33 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now