CVE-2013-2763

EUVD-2013-2702
The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors.  NOTE: the vendor reportedly disputes this issue because it "could not be duplicated" and "an attacker could not remotely exploit this observed behavior to deny PLC control functions.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 72%
Affected Products (NVD)
VendorProductVersion
schneider-electricmodicon_m340_bmx_noc_0401_firmware
-
schneider-electricmodicon_m340_bmx_noe_0100_firmware
-
schneider-electricmodicon_m340_bmx_noe_0100h_firmware
-
schneider-electricmodicon_m340_bmx_noe_0110_firmware
-
schneider-electricmodicon_m340_bmx_noe_0110h_firmware
-
schneider-electricmodicon_m340_bmx_nor_0200h_firmware
-
schneider-electricmodicon_m340_bmx_p34-2010_firmware
-
schneider-electricmodicon_m340_bmx_p34-2030_firmware
-
schneider-electricmodicon_m340_bmxp341000_firmware
-
schneider-electricmodicon_m340_bmxp342010_firmware
-
schneider-electricmodicon_m340_bmxp342020_firmware
-
schneider-electricmodicon_m340_bmxp342030_firmware
-
𝑥
= Vulnerable software versions