VDB

CVE-2020-7568

CVE-2020-7568 PUBLISHED CVSS 4.300000190734863 MEDIUM

A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon M221 (all references, all versions) that could allow non sensitive information disclosure when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.

EPSS 0.06% · 18.1th percentile

Risk Scores

CVSS 3.1
4.300000190734863
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
0.06%
18.1th percentile

Affected Products

VendorProductVersions
n/aModicon M221, all references, all versionsModicon M221, all references, all versions
schneider-electricmodicon_m221_firmware

Timeline

  • Nov 19, 2020 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›