Unknown
CVE-2019-6845
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2019-6845
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information when transferring applications to the controller using Modbus TCP protocol.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- modicon m340 firmware,
- modicon m580 firmware,
- tsxmcpc002m firmware,
- tsxmcpc512k firmware,
- tsxmfp0128p2 firmware,
- tsxmfp064p2 firmware,
- tsxmfpp001m firmware,
- tsxmfpp002m firmware,
- tsxmfpp004m firmware,
- tsxmfpp224k firmware,
- tsxmfpp384k firmware,
- tsxmfpp512k firmware,
- tsxmrpc001m firmware,
- tsxmrpc002m firmware,
- tsxmrpc003m firmware,
- tsxmrpc007m firmware,
- tsxmrpc01m7 firmware,
- tsxmrpc448k firmware,
- tsxmrpc768k firmware,
- tsxmrpf004m firmware,
- tsxmrpf008m firmware,
- tsxmrpp224k firmware,
- tsxmrpp384k firmware
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: