Improper Condition Check in Triconex Model 3009 MP by Schneider Electric
CVE-2021-22742

3.9LOW

Key Information:

Summary

A vulnerability exists in Triconex Model 3009 MP, affecting systems running Tricon V11.3.x, where a module reset can occur if the TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position. This improper check for unusual conditions can lead to unexpected behavior, impacting the operation of critical automation systems.

Affected Version(s)

Triconex Model 3009 MP installed on Tricon V11.3.x systems Triconex Model 3009 MP installed on Tricon V11.3.x systems

References

CVSS V3.1

Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.