APC Smart-UPS Firmware Versions V4.3.8
APC Smart-UPS Firmware Versions V4.3.8
Contents
Document Revision History ................................................................................................2
Introduction ........................................................................................................................3
Latest Firmware Version Table ...........................................................................................3
Determining Compatible Firmware .....................................................................................6
Model Numbers ............................................................................................................6
UPS Series ...................................................................................................................6
Firmware Versions........................................................................................................6
UPS IDs .......................................................................................................................6
Identifying Installed Firmware Versions and UPS IDs ...................................................6
Firmware Filenames .....................................................................................................7
Firmware Compatibility .................................................................................................7
Firmware Downgrading ................................................................................................7
Downloading and Installing UPS Firmware.........................................................................8
Introduction
This document serves as reference of the latest available firmware versions for all APC
Smart-UPS models that are compatible with the Smart-UPS Firmware Upgrade Wizard
(FUW). We recommend that customers always install and utilize the latest released
firmware version for their Smart-UPS to improve functionality, minimize issues and
maximize cybersecurity.
Latest Crypto-
UPS UPS CVE-2022-22805 &
Firmware CVE-2022-0715 graphically
Series ID CVE-2022-22806
Version Signed
CSH 5008 UPS 02.7 Partially Remediated Not Applicable No
1029 UPS 15.5 Fully Remediated Not Applicable Yes
1030 UPS 15.5 Fully Remediated Fully Remediated Yes
1036 UPS 15.5 Fully Remediated Not Applicable Yes
1037 UPS 15.5 Fully Remediated Not Applicable Yes
SCL
1048 UPS 16.5 Not Applicable Not Applicable Yes
1049 UPS 16.5 Not Applicable Not Applicable Yes
1051 UPS 16.5 Not Applicable Not Applicable Yes
1052 UPS 16.5 Not Applicable Not Applicable Yes
1000 UPS 10.0 Not Remediated Not Applicable No
1005 UPS 15.1 Partially Remediated Not Applicable No
1007 UPS 15.0 Partially Remediated Not Applicable No
SMC
1018 UPS 17.0 Fully Remediated Fully Remediated Yes
1028 UPS 17.0 Not Applicable Not Applicable Yes
1061 UPS 02.0 Not Applicable Not Applicable Yes
17 UPS 07.1 Not Remediated Not Applicable No
18 UPS 15.0 Partially Remediated Not Applicable No
20 UPS 15.0 Partially Remediated Not Applicable No
1015 UPS 17.2 Fully Remediated Fully Remediated Yes
1027 UPS 17.2 Not Applicable Not Applicable Yes
SMT
1031 UPS 15.5 Fully Remediated Fully Remediated Yes
1039 UPS 15.5 Fully Remediated Not Applicable Yes
1040 UPS 15.0 Partially Remediated Not Applicable No
1041 UPS 15.0 Partially Remediated Not Applicable No
1050 UPS 16.5 Not Applicable Not Applicable Yes
Latest Crypto-
UPS UPS CVE-2022-22805 &
Firmware CVE-2022-0715 graphically
Series ID CVE-2022-22806
Version Signed
1059 UPS 16.5 Not Applicable Not Applicable Yes
SMT
1060 UPS 02.0 Not Applicable Not Applicable Yes
1026 UPS 15.5 Fully Remediated Fully Remediated Yes
SMTL
1047 UPS 16.5 Not Applicable Not Applicable Yes
20 UPS 15.0 Partially Remediated Not Applicable No
23 UPS 15.0 Partially Remediated Not Applicable No
SMX 1003 UPS 15.0 Partially Remediated Not Applicable No
1031 UPS 15.5 Fully Remediated Fully Remediated Yes
1050 UPS 16.5 Not Applicable Not Applicable Yes
SRC5KUXI:
Partially Remediated Not Applicable No
UPS 14.0
SRCE6KUXI:
1006 Partially Remediated Not Applicable No
UPS 14.1
SRC6KUXICH:
SRC Partially Remediated Not Applicable No
UPS 14.2
SRC10KUXI:
Partially Remediated Not Applicable No
UPS 14.0
1011
SRC10KUXICH:
Partially Remediated Not Applicable No
UPS 14.1
Partially Remediated
1001 UPS 02.9 (Installation changes Not Applicable No
ID to 1013)
1002 UPS 15.1 Partially Remediated Not Applicable No
1010 UPS 15.5 Fully Remediated Not Applicable Yes
1013 UPS 15.1 Partially Remediated Not Applicable No
1014 UPS 15.1 Partially Remediated Not Applicable No
1019 UPS 15.5 Fully Remediated Not Applicable Yes
SRT 1020 UPS 15.8 Fully Remediated Not Applicable Yes
1021 UPS 15.6 Fully Remediated Not Applicable Yes
1024 UPS 15.5 Fully Remediated Not Applicable Yes
1025 UPS 15.5 Fully Remediated Not Applicable Yes
1043 UPS 16.5 Not Applicable Not Applicable Yes
1044 UPS 16.9 Not Applicable Not Applicable Yes
1045 UPS 16.6 Not Applicable Not Applicable Yes
1046 UPS 16.5 Not Applicable Not Applicable Yes
1024 UPS 15.5 Fully Remediated Not Applicable Yes
SRTL 1034 UPS 05.6 Not Applicable Not Applicable Yes
1035 UPS 05.6 Not Applicable Not Applicable Yes
Latest Crypto-
UPS UPS CVE-2022-22805 &
Firmware CVE-2022-0715 graphically
Series ID CVE-2022-22806
Version Signed
1046 UPS 16.5 Not Applicable Not Applicable Yes
SRTL 1062 UPS 04.0 Not Applicable Not Applicable Yes
1063 UPS 04.0 Not Applicable Not Applicable Yes
XP 1016 UPS 15.0 Partially Remediated Not Applicable No
1017 UPS 15.6 Fully Remediated Not Applicable Yes
1025 UPS 15.5 Fully Remediated Not Applicable Yes
1033 UPS 15.6 Fully Remediated Not Applicable Yes
XU
1043 UPS 16.5 Not Applicable Not Applicable Yes
1057 UPS 16.5 Not Applicable Not Applicable Yes
1058 UPS 16.6 Not Applicable Not Applicable Yes
Notes:
1. Release notes are available at the links in the “Latest Firmware Version” column.
2. UPS IDs not listed above do not have available firmware updates.
3. See Schneider Electric Security Notification SEVD-2022-067-02 for details on CVE-2022-
0715, CVE-2022-22805 and CVE-2022-22806.
a. “Not Remediated” means the vulnerability is fully present, and mitigations should
be used.
b. “Partially Remediated” means that certain aspects of the vulnerability are still
present, and mitigations should be used.
c. “Fully Remediated” means that vulnerability is no longer present, and other
mitigations are not required.
d. “Not Applicable” means that the vulnerability was never present.
• From a label adhered to the enclosure, typically on the top, front or rear panel.
• From the About menu on the display:
o SMT, SMTL, and SMX Series: Main Menu → About → UPS Part No
o SRT and SRTL Series: Main Menu → About → UPS → UPS Hardware
and view the Part No
o SYRL Series: Main Menu → About → UPS → System and view the SKU
• From the SmartConnect web UI, log in, select a UPS, and view the MODEL SKU
in the PROFILE section
• From the Network Management Card’s (NMC) web UI, log in, navigate to:
About → UPS and view the SKU
• From the NMC’s Command Line Interface (CLI), log in, run the upsabout
command and view the SKU
UPS Series
The beginning non-numeric characters of a UPS’s Model Number are referred to as its
Series.
E.g., the Series for Model Number SMC1000 is “SMC” and the series for Model Number
SMTL750RM2UC is “SMTL”.
Firmware Versions
Smart-UPS firmware versions begin with the string “UPS ” followed by a version number.
Some interfaces will show the full string, e.g., “UPS 15.5”, but most will show a
combination of the firmware version string and UPS ID, e.g., “UPS 15.5 (ID1026)” or
“v 15.5 (1026)”.
UPS IDs
Every Smart-UPS that supports customer upgradable firmware has an associated UPS ID.
UPSs with same model numbers may have any of several IDs based on their underlying
hardware. On rare occasions, firmware updates will change the ID of a UPS.
• From the SmartConnect web UI, log in, select a UPS, expand the FIRMWARE
section, and view the CURRENT VERSION
• From the Network Management Card’s (NMC) web UI, navigate to: About -> UPS
and view the Firmware Revision
• From the NMC’s Command Line Interface (CLI), run the upsabout command and
view the Firmware Revision
Firmware Filenames
Firmware filenames typically consist of a combination of the UPS Series, the UPS ID, the
firmware version, with spaces replaced by underscores and the decimal points replaced
by hyphens, and a “.enc” suffix. E.g., “SRT1010UPS_15-5.enc”
In a few cases where a single firmware file can be used on multiple Series, the filename
will begin with a combination of multiple Series prefixes.
E.g., “SMTSMX1031UPS_15-5.enc”
For certain SRC series UPSs, model specific firmware is required. In those cases, the
firmware filename will begin with the model number.
E.g., “SRCE6KUXI_ID_1006_UPS_14-1.enc”
Firmware Compatibility
Before attempting to install firmware, it’s important to identify the correct filename by
matching up the Series and ID at the start of the filename and selecting the highest
available Version. Additionally, for SRC models, the filename must begin with the
matching model number. Note that UPSs won’t accept firmware with an ID that does not
match the currently installed firmware.
Firmware Downgrading
As stated above, we recommend that customers always use the latest available firmware,
but under rare circumstances, it might be necessary to install an earlier version, which is
known as downgrading. Downgrading should only be done when recommended by
Schneider Electric / APC Technical Support.
Cryptographic firmware signing ensures that only signed firmware provided by Schneider
Electric can be installed on Smart-UPS models that support it. Consequently,
downgrading from signed firmware to unsigned firmware is not possible. It is only possible
downgrade from newer unsigned firmware to older unsigned firmware, or from newer
signed firmware to older signed firmware. Upgrading from unsigned firmware to signed
firmware is possible and encouraged to improve cybersecurity.