Improper Check for Unusual Conditions in Triconex TCM 4351B by Schneider Electric
CVE-2021-22743

3.9LOW

Key Information:

Summary

A vulnerability exists in the Triconex TCM 4351B system installed on Tricon V11.3.x, where improper handling of unexpected or irregular conditions allows for potential module resets. This issue is triggered when malformed TriStation packets are received while the write-protect keyswitch is set to the program position, which could disrupt normal operations and compromise system reliability.

Affected Version(s)

Triconex TCM 4351B installed on Tricon V11.3.x systems. Triconex TCM 4351B installed on Tricon V11.3.x systems

References

CVSS V3.1

Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.