Buffer Overflow Vulnerability in Schneider Electric Modicon Quantum PLC
CVE-2012-0929
7.5HIGH
Summary
The Modicon Quantum PLC from Schneider Electric has multiple buffer overflow vulnerabilities that can be exploited by remote attackers. By sending specially crafted requests to the device's FTP or HTTP servers, attackers can induce a denial of service. This issue poses significant risks to the operational integrity of systems reliant on these PLCs, necessitating prompt attention and mitigation measures.
References
EPSS Score
12% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved