Show filters
62 Total Results
Displaying 31-40 of 62
Sort by:
Attacker Value
Unknown
CVE-2019-6841
Disclosure Date: October 29, 2019 (last updated November 27, 2024)
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the firmware with no firmware image inside the package using FTP protocol.
0
Attacker Value
Unknown
CVE-2019-6851
Disclosure Date: October 29, 2019 (last updated November 27, 2024)
A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the controller when using TFTP protocol.
0
Attacker Value
Unknown
CVE-2019-6850
Disclosure Date: October 29, 2019 (last updated November 27, 2024)
A CWE-200: Information Exposure vulnerability exists in Modicon M580, Modicon BMENOC 0311, and Modicon BMENOC 0321, which could cause the disclosure of sensitive information when reading specific registers with the REST API of the controller/communication module.
0
Attacker Value
Unknown
CVE-2019-6844
Disclosure Date: October 29, 2019 (last updated November 27, 2024)
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service atack on the PLC when upgrading the controller with a firmware package containing an invalid web server image using FTP protocol.
0
Attacker Value
Unknown
CVE-2019-6848
Disclosure Date: October 29, 2019 (last updated November 27, 2024)
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 CPU (BMEx58*) and Modicon M580 communication module (BMENOC0311, BMENOC0321) (see notification for version info), which could cause a Denial of Service attack on the PLC when sending specific data on the REST API of the controller/communication module.
0
Attacker Value
Unknown
CVE-2019-6828
Disclosure Date: September 17, 2019 (last updated November 27, 2024)
A CWE-248: Uncaught Exception vulnerability exists Modicon M580 (firmware version prior to V2.90), Modicon M340 (firmware version prior to V3.10), Modicon Premium (all versions), and Modicon Quantum (all versions), which could cause a possible denial of service when reading specific coils and registers in the controller over Modbus.
0
Attacker Value
Unknown
CVE-2019-6830
Disclosure Date: September 17, 2019 (last updated November 27, 2024)
A CWE-248: Uncaught Exception vulnerability exists IN Modicon M580 all versions prior to V2.80, which could cause a possible denial of service when sending an appropriately timed HTTP request to the controller.
0
Attacker Value
Unknown
CVE-2019-6829
Disclosure Date: September 17, 2019 (last updated November 27, 2024)
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580 (firmware version prior to V2.90) and Modicon M340 (firmware version prior to V3.10), which could cause a possible denial of service when writing to specific memory addresses in the controller over Modbus.
0
Attacker Value
Unknown
CVE-2019-6809
Disclosure Date: September 17, 2019 (last updated November 27, 2024)
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580 (firmware versions prior to V2.90), Modicon M340 (firmware versions prior to V3.10), Modicon Premium (all versions), Modicon Quantum (all versions), which could cause a possible denial of service when reading invalid data from the controller.
0
Attacker Value
Unknown
CVE-2018-7838
Disclosure Date: July 15, 2019 (last updated November 27, 2024)
A CWE-119 Buffer Errors vulnerability exists in Modicon M580 CPU - BMEP582040, all versions before V2.90, and Modicon Ethernet Module BMENOC0301, all versions before V2.16, which could cause denial of service on the FTP service of the controller or the Ethernet BMENOC module when it receives a FTP CWD command with a data length greater than 1020 bytes. A power cycle is then needed to reactivate the FTP service.
0