CVE-2018-8872
04.05.2018, 17:29
In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, system calls read directly from memory addresses within the control program area without any verification. Manipulating this data could allow attacker data to be copied anywhere within memory.Enginsight
Vendor | Product | Version |
---|---|---|
schneider-electric | triconex_tricon_mp_3008_firmware | 10.0 ≤ 𝑥 ≤ 10.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References