
apxutil
A tool to manipulate Schneider Electric PLC archive files
binary-analysisembedded-systems-securityexploitation+5
11

A tool to manipulate Schneider Electric PLC archive files

This repository includes the code and files needed to test and execute a PoC for CVE-2025-41656

Authenticated users can upload arbitrary files (e.g. .html, .svg) as profile images in OpenPLC Runtime. These files are publicly accessible without…

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…