PT-2026-58052 · Unknown · 5380/5480/5580 Controllers
CVE-2025-11698
·
Published
2026-07-14
·
Updated
2026-07-14
CVSS v4.0
9.2
Critical
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H |
Name of the Vulnerable Software and Affected Versions
5380/5480/5580 controllers boot firmware versions prior to 1.072
Description
A buffer copy issue without input size validation exists in the boot firmware. This allows a remote attacker to write invalid file data to the controller, potentially causing the device to enter a major non-recoverable fault (MNRF), which is a critical system failure state that renders the device inoperable.
Recommendations
Update boot firmware to version 1.072 or later.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
5380/5480/5580 Controllers