Show filters
55 Total Results
Displaying 51-55 of 55
Sort by:
Attacker Value
Unknown
CVE-2018-7849
Disclosure Date: May 22, 2019 (last updated November 27, 2024)
A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum and Modicon Premium which could cause a possible Denial of Service due to improper data integrity check when sending files the controller over Modbus.
0
Attacker Value
Unknown
CVE-2018-7845
Disclosure Date: May 22, 2019 (last updated November 27, 2024)
A CWE-125: Out-of-bounds Read vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause the disclosure of unexpected data from the controller when reading specific memory blocks in the controller over Modbus.
0
Attacker Value
Unknown
CVE-2018-7852
Disclosure Date: May 22, 2019 (last updated November 27, 2024)
A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause denial of service when an invalid private command parameter is sent to the controller over Modbus.
0
Attacker Value
Unknown
CVE-2018-7842
Disclosure Date: May 22, 2019 (last updated November 27, 2024)
A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by conducting a brute force attack on Modbus parameters sent to the controller.
0
Attacker Value
Unknown
CVE-2014-0754
Disclosure Date: October 03, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in SchneiderWEB on Schneider Electric Modicon PLC Ethernet modules 140CPU65x Exec before 5.5, 140NOC78x Exec before 1.62, 140NOE77x Exec before 6.2, BMXNOC0401 before 2.05, BMXNOE0100 before 2.9, BMXNOE0110x Exec before 6.0, TSXETC101 Exec before 2.04, TSXETY4103x Exec before 5.7, TSXETY5103x Exec before 5.9, TSXP57x ETYPort Exec before 5.7, and TSXP57x Ethernet Copro Exec before 5.5 allows remote attackers to visit arbitrary resources via a crafted HTTP request.
0