Buffer Overflow Vulnerability in Schneider Electric Modicon Quantum PLC
CVE-2012-0929

7.5HIGH

Key Information:

Vendor
CVE Published:
28 January 2012

Summary

The Modicon Quantum PLC from Schneider Electric has multiple buffer overflow vulnerabilities that can be exploited by remote attackers. By sending specially crafted requests to the device's FTP or HTTP servers, attackers can induce a denial of service. This issue poses significant risks to the operational integrity of systems reliant on these PLCs, necessitating prompt attention and mitigation measures.

References

EPSS Score

12% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.