Improper Check for Unusual Conditions in Triconex TCM 4351B by Schneider Electric
CVE-2021-22743
3.9LOW
Key Information:
- Vendor
- Schneider Electric
- Vendor
- CVE Published:
- 26 May 2021
Summary
A vulnerability exists in the Triconex TCM 4351B system installed on Tricon V11.3.x, where improper handling of unexpected or irregular conditions allows for potential module resets. This issue is triggered when malformed TriStation packets are received while the write-protect keyswitch is set to the program position, which could disrupt normal operations and compromise system reliability.
Affected Version(s)
Triconex TCM 4351B installed on Tricon V11.3.x systems. Triconex TCM 4351B installed on Tricon V11.3.x systems
References
CVSS V3.1
Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved