CVE-2018-7842
22.05.2019, 20:29
A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by conducting a brute force attack on Modbus parameters sent to the controller.Enginsight
Vendor | Product | Version |
---|---|---|
schneider-electric | modicon_m580_firmware | * |
schneider-electric | modicon_m340_firmware | * |
schneider-electric | modicon_quantum_firmware | * |
schneider-electric | modicon_premium_firmware | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration