CVE-2020-7559
19.11.2020, 22:15
A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in PLC Simulator on EcoStruxure Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxure Control Expert software when receiving a specially crafted request over Modbus.
Vendor | Product | Version |
---|---|---|
schneider-electric | ecostruxure_control_expert | * |
𝑥
= Vulnerable software versions