PT-2017-3704 · Schneider Electric · Modicon Premium+3

Nikita Maksimov

+1

·

Published

2017-04-28

·

Updated

2024-04-10

·

CVE-2018-7762

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200 (affected versions not specified)
Description: A buffer overflow issue exists in the web services that process SOAP requests, potentially allowing a remote attacker to cause a denial of service using specially crafted SOAP requests. The vulnerability is related to the processing of SOAP requests and could result in a buffer overflow, leading to a denial of service.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2018-01066
CVE-2018-7762

Affected Products

Bmxnor0200
Modicon M340
Modicon Premium
Modicon Quantum Plc