CVE-2025-2875 | Schneider Electric Modicon Controllers LMC058 URL external reference (SEVD-2025-133-01 / EUVD-2025-14678)
A vulnerability, which was classified as problematic, was found in Schneider Electric Modicon Controllers M241, Modicon Controllers M251, Modicon Controllers M258 and Modicon Controllers LMC058. Affected is an unknown function of the component URL Handler. The manipulation leads to externally controlled reference.
This vulnerability is traded as CVE-2025-2875. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.