{"schema_version":1,"title":"Circutor Sge-Plc1000 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 9 vulnerabilities in Circutor Sge-Plc1000: 0 in the last 7 days and 0 in the last 90 days, 6 of them critical and 0 exploited in the wild. The most recent, CVE-2025-11789, was published on 2 December 2025.","url":"https://junglewise.ai/threats/technologies/sge-plc1000","json_url":"https://junglewise.ai/threats/technologies/sge-plc1000.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/sge-plc1000","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":3,"all_time":9,"critical":6,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":9},"latest":[{"cve":"CVE-2025-11789","cvss":7.5,"epss":0.0026,"slug":"cve-2025-11789-out-of-bounds-read-vulnerability-in-circutor-sge-plc1000-sge","title":"Out-of-bounds read vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The 'DownloadFile' function converts a parameter to an integer us","severity":"high","exploited":false,"published_at":"2025-12-02T13:15:52.897+00:00","url":"https://junglewise.ai/threats/cve-2025-11789-out-of-bounds-read-vulnerability-in-circutor-sge-plc1000-sge"},{"cve":"CVE-2025-11788","cvss":9.8,"epss":0.0033,"slug":"cve-2025-11788-heap-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Heap-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'ShowSupervisorParameters()' function, there is an","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:51.027+00:00","url":"https://junglewise.ai/threats/cve-2025-11788-heap-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11787","cvss":8.8,"epss":0.0101,"slug":"cve-2025-11787-command-injection-vulnerability-in-the-operating-system-in","title":"Command injection vulnerability in the operating system in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 through the 'GetDNS()', 'CheckPing()' and '","severity":"high","exploited":false,"published_at":"2025-12-02T13:15:50.73+00:00","url":"https://junglewise.ai/threats/cve-2025-11787-command-injection-vulnerability-in-the-operating-system-in"},{"cve":"CVE-2025-11786","cvss":9.8,"epss":0.0037,"slug":"cve-2025-11786-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'SetUserPassword()' function, the 'newPassword' p","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:50.493+00:00","url":"https://junglewise.ai/threats/cve-2025-11786-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11784","cvss":9.8,"epss":0.0037,"slug":"cve-2025-11784-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'ShowMeterDatabase()' function, there is an unlim","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:49.977+00:00","url":"https://junglewise.ai/threats/cve-2025-11784-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11783","cvss":9.8,"epss":0.0058,"slug":"cve-2025-11783-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The vulnerability is found in the 'AddEvent()' function","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:49.72+00:00","url":"https://junglewise.ai/threats/cve-2025-11783-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11782","cvss":9.8,"epss":0.0037,"slug":"cve-2025-11782-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The 'ShowDownload()' function uses “sprintf()” to format","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:49.42+00:00","url":"https://junglewise.ai/threats/cve-2025-11782-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11781","cvss":7.8,"epss":0.0014,"slug":"cve-2025-11781-use-of-hardcoded-cryptographic-keys-in-circutor-sge-plc1000-sge","title":"Use of hardcoded cryptographic keys in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The affected firmware contains a hardcoded static authenticati","severity":"high","exploited":false,"published_at":"2025-12-02T13:15:49.14+00:00","url":"https://junglewise.ai/threats/cve-2025-11781-use-of-hardcoded-cryptographic-keys-in-circutor-sge-plc1000-sge"},{"cve":"CVE-2025-11779","cvss":9.8,"epss":0.0127,"slug":"cve-2025-11779-stack-based-buffer-overflow-vulnerability-in-circutorsge-plc1000","title":"Stack-based buffer overflow vulnerability in CircutorSGE-PLC1000/SGE-PLC50 v9.0.2. The 'SetLan' function is invoked when a new configuration","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:48.583+00:00","url":"https://junglewise.ai/threats/cve-2025-11779-stack-based-buffer-overflow-vulnerability-in-circutorsge-plc1000"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Circutor Sge-Plc1000 Firmware","slug":"sge-plc1000-firmware","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/sge-plc1000-firmware"},{"name":"Circutor Sge-Plc50","slug":"sge-plc50","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/sge-plc50"},{"name":"Circutor Sge-Plc50 Firmware","slug":"sge-plc50-firmware","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/sge-plc50-firmware"}],"technology":{"hub":true,"name":"Circutor Sge-Plc1000","slug":"sge-plc1000","vendor":{"name":"Circutor","slug":"circutor","url":"https://junglewise.ai/threats/vendors/circutor"},"aliases":[],"url":"https://junglewise.ai/threats/technologies/sge-plc1000"},"most_severe":[{"cve":"CVE-2025-11779","cvss":9.8,"epss":0.0127,"slug":"cve-2025-11779-stack-based-buffer-overflow-vulnerability-in-circutorsge-plc1000","title":"Stack-based buffer overflow vulnerability in CircutorSGE-PLC1000/SGE-PLC50 v9.0.2. The 'SetLan' function is invoked when a new configuration","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:48.583+00:00","url":"https://junglewise.ai/threats/cve-2025-11779-stack-based-buffer-overflow-vulnerability-in-circutorsge-plc1000"},{"cve":"CVE-2025-11783","cvss":9.8,"epss":0.0058,"slug":"cve-2025-11783-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The vulnerability is found in the 'AddEvent()' function","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:49.72+00:00","url":"https://junglewise.ai/threats/cve-2025-11783-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11786","cvss":9.8,"epss":0.0037,"slug":"cve-2025-11786-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'SetUserPassword()' function, the 'newPassword' p","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:50.493+00:00","url":"https://junglewise.ai/threats/cve-2025-11786-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11784","cvss":9.8,"epss":0.0037,"slug":"cve-2025-11784-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'ShowMeterDatabase()' function, there is an unlim","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:49.977+00:00","url":"https://junglewise.ai/threats/cve-2025-11784-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11782","cvss":9.8,"epss":0.0037,"slug":"cve-2025-11782-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The 'ShowDownload()' function uses “sprintf()” to format","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:49.42+00:00","url":"https://junglewise.ai/threats/cve-2025-11782-stack-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11788","cvss":9.8,"epss":0.0033,"slug":"cve-2025-11788-heap-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000","title":"Heap-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'ShowSupervisorParameters()' function, there is an","severity":"critical","exploited":false,"published_at":"2025-12-02T13:15:51.027+00:00","url":"https://junglewise.ai/threats/cve-2025-11788-heap-based-buffer-overflow-vulnerability-in-circutor-sge-plc1000"},{"cve":"CVE-2025-11787","cvss":8.8,"epss":0.0101,"slug":"cve-2025-11787-command-injection-vulnerability-in-the-operating-system-in","title":"Command injection vulnerability in the operating system in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 through the 'GetDNS()', 'CheckPing()' and '","severity":"high","exploited":false,"published_at":"2025-12-02T13:15:50.73+00:00","url":"https://junglewise.ai/threats/cve-2025-11787-command-injection-vulnerability-in-the-operating-system-in"},{"cve":"CVE-2025-11781","cvss":7.8,"epss":0.0014,"slug":"cve-2025-11781-use-of-hardcoded-cryptographic-keys-in-circutor-sge-plc1000-sge","title":"Use of hardcoded cryptographic keys in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The affected firmware contains a hardcoded static authenticati","severity":"high","exploited":false,"published_at":"2025-12-02T13:15:49.14+00:00","url":"https://junglewise.ai/threats/cve-2025-11781-use-of-hardcoded-cryptographic-keys-in-circutor-sge-plc1000-sge"},{"cve":"CVE-2025-11789","cvss":7.5,"epss":0.0026,"slug":"cve-2025-11789-out-of-bounds-read-vulnerability-in-circutor-sge-plc1000-sge","title":"Out-of-bounds read vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The 'DownloadFile' function converts a parameter to an integer us","severity":"high","exploited":false,"published_at":"2025-12-02T13:15:52.897+00:00","url":"https://junglewise.ai/threats/cve-2025-11789-out-of-bounds-read-vulnerability-in-circutor-sge-plc1000-sge"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}