Improper Condition Check in Triconex Model 3009 MP on Tricon V11.3.x Systems
CVE-2021-22747
3.9LOW
Key Information:
- Vendor
- Schneider Electric
- Vendor
- CVE Published:
- 26 May 2021
Summary
A vulnerability affecting Triconex Model 3009 MP installed on Tricon V11.3.x systems allows for improper checks when the module receives malformed TriStation packets. This scenario can provoke a reset of the module, particularly when the write-protect keyswitch is set to the program position, potentially disrupting system performance and operational integrity.
Affected Version(s)
Triconex Model 3009 MP installed on Tricon V11.3.x systems Triconex Model 3009 MP installed on Tricon V11.3.x systems
References
CVSS V3.1
Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved