CVE-2018-7760 PUBLISHED CVSS 7.5 HIGH

De multiples vulnérabilités ont été découvertes dans SCADA Schneider Electric Modicon. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et un contournement de la politique de sécurité.

EPSS 0.14% · 34.2th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
0.14%
34.2th percentile

Affected Products

VendorProductVersions
schneider-electrictsxh5744mc_firmware
schneider-electrictsxp572634mc_firmware
schneider-electric140cpu65860c_firmware
schneider-electrictsxp574634m_firmware
schneider-electrictsxp57204mc_firmware
schneider-electrictsxp57354mc_firmware
schneider-electric140cpu43412u_firmware
schneider-electricmodicon_m340_bmxp342000_firmware
schneider-electrictsxp57304m_firmware
schneider-electrictsxp57554mc_firmware
Schneider Electric SEModicon M340, Modicon Premium, Modicon Quantum, BMXNOR0201All Modicon M340, Premium, Quantum PLCs and BMXNOR0201
schneider-electrictsxp574634mc_firmware
schneider-electrictsxp57354m_firmware
schneider-electrictsxh5724m_firmware
schneider-electrictsxp57204m_firmware
schneider-electrictsxp57304mc_firmware
schneider-electricmodicon_m340_bmxp3420102_firmware
schneider-electricbmxnor0200_firmware
schneider-electricmodicon_m340_bmxp3420102cl_firmware
schneider-electrictsxp576634m_firmware

…and 39 more

Timeline

References

Open in Interactive Console →