Improper Check Vulnerability in Triconex Model 3009 MP by Schneider Electric
CVE-2021-22744
3.9LOW
Key Information:
- Vendor
- Schneider Electric
- Vendor
- CVE Published:
- 26 May 2021
Summary
A vulnerability has been identified in the Triconex Model 3009 MP, which operates on Tricon V11.3.x systems. This issue arises from improper handling of unusual or exceptional conditions. Specifically, when the write-protect keyswitch is set to the program position, the system can reset its modules upon receiving malformed TriStation packets. This flaw may lead to unexpected operational disruptions, requiring immediate attention to mitigate potential risks.
Affected Version(s)
Triconex Model 3009 MP installed on Tricon V11.3.x systems Triconex Model 3009 MP installed on Tricon V11.3.x systems
References
CVSS V3.1
Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved