CVE-2022-24323
09.03.2022, 23:15
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a disruption of communication between the Modicon controller and the engineering software, when an attacker is able to intercept and manipulate specific Modbus response data. Affected Product: EcoStruxure Process Expert (V2021 and prior), EcoStruxure Control Expert (V15.0 SP1 and prior)Enginsight
Vendor | Product | Version |
---|---|---|
schneider-electric | ecostruxure_control_expert | 𝑥 < 15.0 |
schneider-electric | ecostruxure_control_expert | 15.0 |
schneider-electric | ecostruxure_control_expert | 15.0:sp1 |
schneider-electric | ecostruxure_process_expert | 𝑥 ≤ 2021 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration