A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) which could cause a Denial of Service of the controller when reading specific memory blocks using Modbus TCP.
CWE-754: Hay una vulnerabilidad de Comprobación Inapropiada de Condiciones Inusuales o Excepcionales en Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (véase la notificación de seguridad para versiones específicas) que podría causar una Denegación de Servicio del controlador cuando se leen bloques de memoria específicos usando Modbus TCP.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | NONE |
| Integrity Impact | NONE |
| Availability Impact | HIGH |
AV:N/AC:L/Au:N/C:N/I:N/A:P
| Access Vector | NETWORK |
|---|---|
| Access Complexity | LOW |
| Authentication | NONE |
| Confidentiality Impact | NONE |
| Integrity Impact | NONE |
| Availability Impact | PARTIAL |
| Source | Type | Description |
|---|---|---|
| [email protected] | Secondary |
en
CWE-754
|
| [email protected] | Primary |
en
CWE-754
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| schneider-electric | modicon_m580_firmware | * | <built-in method update of dict object at 0x7e60bbd633c0> | Operating System |
| schneider-electric | modicon_m340_firmware | * | <built-in method update of dict object at 0x7e60b847a080> | Operating System |
| schneider-electric | tsxh5744m_firmware | * | <built-in method update of dict object at 0x7e61342e6d00> | Operating System |
| schneider-electric | tsxh5724m_firmware | * | <built-in method update of dict object at 0x7e61342e53c0> | Operating System |
| schneider-electric | tsxp576634m_firmware | * | <built-in method update of dict object at 0x7e60bbd63140> | Operating System |
| schneider-electric | tsxp57554m_firmware | * | <built-in method update of dict object at 0x7e61342e6080> | Operating System |
| schneider-electric | tsxp575634m_firmware | * | <built-in method update of dict object at 0x7e60bbd60cc0> | Operating System |
| schneider-electric | tsxp57454m_firmware | * | <built-in method update of dict object at 0x7e60e8875000> | Operating System |
| schneider-electric | tsxp574634m_firmware | * | <built-in method update of dict object at 0x7e613c4c2180> | Operating System |
| schneider-electric | tsxp57354m_firmware | * | <built-in method update of dict object at 0x7e60bbd638c0> | Operating System |
| schneider-electric | tsxp573634m_firmware | * | <built-in method update of dict object at 0x7e60eb219080> | Operating System |
| schneider-electric | tsxp57304m_firmware | * | <built-in method update of dict object at 0x7e6111c1fe00> | Operating System |
| schneider-electric | tsxp57254m_firmware | * | <built-in method update of dict object at 0x7e60e8874d80> | Operating System |
| schneider-electric | tsxp572634m_firmware | * | <built-in method update of dict object at 0x7e6112303b40> | Operating System |
| schneider-electric | tsxp57204m_firmware | * | <built-in method update of dict object at 0x7e6111c1df00> | Operating System |
| schneider-electric | tsxp571634m_firmware | * | <built-in method update of dict object at 0x7e60b8479800> | Operating System |
| schneider-electric | tsxp57154m_firmware | * | <built-in method update of dict object at 0x7e60b847a640> | Operating System |
| schneider-electric | tsxp57104m_firmware | * | <built-in method update of dict object at 0x7e6111c1e000> | Operating System |
| schneider-electric | 140cpu65150_firmware | * | <built-in method update of dict object at 0x7e60bbd62dc0> | Operating System |
| schneider-electric | 140cpu65160_firmware | * | <built-in method update of dict object at 0x7e6112d6ad40> | Operating System |
| schneider-electric | 140cpu65260_firmware | * | <built-in method update of dict object at 0x7e60b847b840> | Operating System |
| schneider-electric | 140cpu67261_firmware | * | <built-in method update of dict object at 0x7e60b847a380> | Operating System |
| schneider-electric | 140cpu67060_firmware | * | <built-in method update of dict object at 0x7e60b84799c0> | Operating System |
| schneider-electric | 140cpu67160_firmware | * | <built-in method update of dict object at 0x7e6111c1e700> | Operating System |
| schneider-electric | 140cpu67261_firmware | * | <built-in method update of dict object at 0x7e6111c1d7c0> | Operating System |
| schneider-electric | 140cpu67260_firmware | * | <built-in method update of dict object at 0x7e60b8478300> | Operating System |
| schneider-electric | 140cpu65860_firmware | * | <built-in method update of dict object at 0x7e6111c1dc80> | Operating System |
| schneider-electric | 140cpu67861_firmware | * | <built-in method update of dict object at 0x7e61342e5f00> | Operating System |
| schneider-electric | 140cpu65160s_firmware | * | <built-in method update of dict object at 0x7e60bb886500> | Operating System |
| schneider-electric | 140cpu67160s_firmware | * | <built-in method update of dict object at 0x7e60e8877a00> | Operating System |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:modicon_m580_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:modicon_m580:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:modicon_m340_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:modicon_m340:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxh5744m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxh5744m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxh5724m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxh5724m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp576634m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp576634m_:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57554m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57554m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp575634m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp575634m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57454m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57454m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp574634m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp574634m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57354m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57354m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp573634m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp573634m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57304m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57304m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57254m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57254m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp572634m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp572634m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57204m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57204m_:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp571634m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp571634m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57154m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57154m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tsxp57104m_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tsxp57104m:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu65150_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu65150:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu65160_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu65160:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu65260_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu65260:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67261_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67261:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67060_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67060:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67160_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67160:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67261_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67261:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67260_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67260:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu65860_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu65860:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67861_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67861:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu65160s_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu65160s:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:140cpu67160s_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:140cpu67160s:-:*:*:*:*:*:*:* |