CVE-2018-7842

9.8CRITICAL

A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by

게시됨: 5/22/2019업데이트됨: 11/21/2024

설명

A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by conducting a brute force attack on Modbus parameters sent to the controller.

AI 분석AI 기반

영향받는 제품

schneider-electricmodicon_m580_firmware
schneider-electricmodicon_m580
-
schneider-electricmodicon_m340_firmware
schneider-electricmodicon_m340
-
schneider-electricmodicon_quantum_firmware
schneider-electricmodicon_quantum
-
schneider-electricmodicon_premium_firmware
schneider-electricmodicon_premium
-

참조