PT-2018-1526 · Schneider Electric · Modicon M221

Yehonatan Kfir

·

Publicado

2018-07-30

·

Atualizado

2026-05-29

·

CVE-2018-7789

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Modicon M221 versions prior to V1.6.2.0
Description The issue is related to an improper check for unusual or exceptional conditions, allowing unauthorized users to remotely reboot the device using crafted programming protocol frames. This can be exploited by a remote attacker to reboot the Modicon M221 device.
Recommendations For versions prior to V1.6.2.0, update the firmware to version V1.6.2.0 or later to resolve the issue. As a temporary workaround, consider restricting remote access to the device until the update can be applied.

Correção

Improper Check for Exceptional Conditions

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2018-01081
CVE-2018-7789

Produtos afetados

Modicon M221