PowerSYSTEM Center is affected by a mishandling of exceptional conditions vulnerability. Crafted data that is passed to the API may trigger an exception, resulting in a denial-of-service condition.
Metrics
Affected Vendors & Products
Solution
Subnet Solutions Inc. recommends users update PowerSYSTEM Center (PSC) to the latest versions: * PSC 2020 Update 25 * PSC 2024 For assistance with updating PSC, reach out directly to Subnet Solutions.
Workaround
If updating PSC is not possible, Subnet Solutions Inc recommends users apply the following mitigations to help reduce risk: * Disable Notification Service, Email Dispatch Service, or the outgoing email server in Notifications/Settings. * Configure PowerSYSTEM Center DCS network firewall to only allow connections to an approved and authorized email server. * Manage administrator access to PowerSYSTEM Center DCS operating system. * Monitor user activity records to ensure users are following acceptable usage policies of the application.
Fri, 11 Apr 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 11 Apr 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Subnet Solutions PowerSYSTEM Center is affected by a mishandling of exceptional conditions vulnerability. Crafted data that is passed to the API may trigger an exception, resulting in a denial-of-service condition. | |
Title | Subnet Solutions PowerSYSTEM Center Deserialization of Untrusted Data | |
Weaknesses | CWE-502 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-04-11T16:12:37.100Z
Reserved: 2025-04-08T00:02:45.747Z
Link: CVE-2025-31935

Updated: 2025-04-11T16:12:31.808Z

Status : Awaiting Analysis
Published: 2025-04-11T16:15:20.047
Modified: 2025-04-15T18:39:43.697
Link: CVE-2025-31935

No data.

No data.