PT-2018-1526 · Schneider Electric · Modicon M221
Yehonatan Kfir
·
Publicado
2018-07-30
·
Atualizado
2026-05-29
·
CVE-2018-7789
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Modicon M221 versions prior to V1.6.2.0
Description
The issue is related to an improper check for unusual or exceptional conditions, allowing unauthorized users to remotely reboot the device using crafted programming protocol frames. This can be exploited by a remote attacker to reboot the Modicon M221 device.
Recommendations
For versions prior to V1.6.2.0, update the firmware to version V1.6.2.0 or later to resolve the issue. As a temporary workaround, consider restricting remote access to the device until the update can be applied.
Correção
Improper Check for Exceptional Conditions
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Modicon M221