Stack-based Buffer Overflow in Schneider Electric's Notifier Software
CVE-2025-3916
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 13 May 2025
What is CVE-2025-3916?
A stack-based buffer overflow vulnerability in Schneider Electric's Notifier Software poses significant security risks. This flaw allows local attackers to craft malicious project files (specifically SSD files) that, when opened by an end user, could lead to arbitrary code execution on the user's system. If exploited, the attacker could gain unauthorized access and control over the affected system. Users are urged to exercise caution and ensure that their software is updated to mitigate potential security threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
EcoStruxure™ Power Build Rapsody software v2.7.12 FR and prior
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved