Denial of Service Vulnerability in Modicon M580, M340, Quantum, and Premium Controllers by Schneider Electric
CVE-2018-7857
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 22 May 2019
What is CVE-2018-7857?
A vulnerability exists in the Modicon M580, M340, Quantum, and Premium controllers by Schneider Electric. This issue allows for Denial of Service conditions due to an uncaught exception when writing out of bounds variables to the controller via Modbus. If exploited, this can lead to unexpected behaviors, including potential interruption of service. Users are encouraged to apply available updates and follow best practices for securing their networks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Modicon M580 Modicon M340 Modicon Quantum Modicon Premium Modicon M580 Modicon M340 Modicon Quantum Modicon Premium
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved