Out-of-Bounds Write Vulnerability in Schneider Electric's Communication Modules
CVE-2022-34759
7.5HIGH
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 13 July 2022
What is CVE-2022-34759?
An out-of-bounds write vulnerability exists in Schneider Electric's X80 Advanced RTU Communication Module and OPC UA Modicon Communication Module. This issue arises from improper parsing of HTTP headers, potentially leading to a denial of service for the web server. Attackers could exploit this vulnerability to disrupt services, affecting the availability and reliability of critical communication functions in these modules.
Affected Version(s)
OPC UA Modicon Communication Module BMENUA0100
X80 advanced RTU Communication Module BMENOR2200H V1.0