Improper Condition Check in Modicon Controllers by Schneider Electric
CVE-2019-6857
Summary
A vulnerability exists in multiple Modicon controllers from Schneider Electric, where improper checks for unusual conditions can lead to Denial of Service. This issue arises specifically when certain memory blocks are accessed using the Modbus TCP protocol, potentially causing disruption in the controller's functionality. Affected models include Modicon M580, M340, Quantum, and Premium, as detailed in the related security notifications.
Affected Version(s)
Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific ) Modicon M580
Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific ) Modicon M340
Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific ) Modicon Quantum
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved