CVE-2018-7842

9.8CRITICAL

A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by

Veröffentlicht: 5/22/2019Aktualisiert: 11/21/2024

Beschreibung

A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by conducting a brute force attack on Modbus parameters sent to the controller.

KI-AnalyseKI-gestützt

Betroffene Produkte

schneider-electricmodicon_m580_firmware
schneider-electricmodicon_m580
-
schneider-electricmodicon_m340_firmware
schneider-electricmodicon_m340
-
schneider-electricmodicon_quantum_firmware
schneider-electricmodicon_quantum
-
schneider-electricmodicon_premium_firmware
schneider-electricmodicon_premium
-

Referenzen