VDB
BDU%3A2021-03892
BDU%3A2021-03892
PUBLISHED
CVSS 9 CRITICAL
Уязвимость микропрограммного обеспечения программируемого логического контроллера Schneider Electric Modicon M340, связанная с записью за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
9
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schneider Electric, Fortinet Inc. | Modicon M340, Premium processors with integrated Ethernet COPRO, Quantum communication modules, Quantum processors with integrated Ethernet COPRO, Premium communication modules, FortiGate IPS |
Timeline
- Aug 4, 2021 CVE Published
- May 13, 2022 CVE Updated
References
- https://download.schneider-electric.com/files?p_enDocType=Technical+leaflet&p_File_Name=SEVD-2020-315-01_Modicon_Web_Server_Security_Notification.pdf&p_Doc_Ref=SEVD-2020-315-01 url
- https://www.se.com/ww/en/download/document/SEVD-2020-315-01/ url
- https://www.fortiguard.com/zeroday/FG-VD-20-106 advisory