CVE-2020-7533
01.12.2020, 15:15
CWE-287: Improper Authentication vulnerability exists which could cause the execution of commands on the webserver without authentication when sending specially crafted HTTP requests.Enginsight
Vendor | Product | Version |
---|---|---|
schneider-electric | modicon_m340_bmxp3420302_firmware | 𝑥 < 3.20 |
schneider-electric | modicon_m340_bmxp342000_firmware | 𝑥 < 3.20 |
schneider-electric | modicon_m340_bmxp341000_firmware | 𝑥 < 3.20 |
schneider-electric | modicon_m340_bmxp3420102_firmware | 𝑥 < 3.20 |
schneider-electric | modicon_m340_bmxp3420302_firmware | 𝑥 < 3.20 |
schneider-electric | bmxnoe0100_firmware | 𝑥 < 3.3 |
schneider-electric | bmxnoe0110_firmware | 𝑥 < 6.5 |
schneider-electric | bmxnoc0401_firmware | 𝑥 < 2.10 |
schneider-electric | tsxp574634_firmware | 𝑥 < 6.1 |
schneider-electric | tsxp575634_firmware | 𝑥 < 6.1 |
schneider-electric | tsxp576634_firmware | 𝑥 < 6.1 |
schneider-electric | tsxety4103_firmware | 𝑥 < 6.2 |
schneider-electric | tsxety5103_firmware | 𝑥 < 6.4 |
schneider-electric | 140noe77111_firmware | 𝑥 < 7.1 |
schneider-electric | 140noc78000_firmware | 𝑥 < 1.74 |
schneider-electric | 140noc77101_firmware | 𝑥 < 1.08 |
schneider-electric | 140cpu65260_firmware | 𝑥 < 6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration