Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position. This CVE ID is unique from CVE-2021-22742, CVE-2021-22745, CVE-2021-22746, and CVE-2021-22747.
Existe una vulnerabilidad de comprobación inadecuada de condiciones inusuales o excepcionales en el modelo 3009 MP de Triconex instalado en sistemas Tricon versión V11.3.x que podría provocar el reinicio del módulo cuando el TCM recibe paquetes TriStation malformados mientras el interruptor de llave de protección contra escritura está en la posición de programa. Este ID de CVE es único respecto a CVE-2021-22742, CVE-2021-22745, CVE-2021-22746 y CVE-2021-22747
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
| Attack Vector | PHYSICAL |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | HIGH |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | NONE |
| Integrity Impact | NONE |
| Availability Impact | HIGH |
AV:L/AC:L/Au:N/C:N/I:N/A:P
| Access Vector | LOCAL |
|---|---|
| Access Complexity | LOW |
| Authentication | NONE |
| Confidentiality Impact | NONE |
| Integrity Impact | NONE |
| Availability Impact | PARTIAL |
| Source | Type | Description |
|---|---|---|
| [email protected] | Secondary |
en
CWE-754
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| schneider-electric | triconex_model_3009_mp_firmware | * | <built-in method update of dict object at 0x7e60e884c2c0> | Operating System |
| schneider-electric | tcm_4351b_firmware | * | <built-in method update of dict object at 0x7e61109d5600> | Operating System |
| schneider-electric | tcm_4351b_firmware | 11.7.0 | <built-in method update of dict object at 0x7e60e884e2c0> | Operating System |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:triconex_model_3009_mp_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:triconex_model_3009_mp:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:schneider-electric:tcm_4351b_firmware:*:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:schneider-electric:tcm_4351b_firmware:11.7.0:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:schneider-electric:tcm_4351b:-:*:*:*:*:*:*:* |