Schneider-electric

Somachine

7 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.28%
  • Published 11.12.2020 01:15:11
  • Last modified 21.11.2024 05:22:29

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Modicon M258 Firmware (All versions prior to V5.0.4.11) and SoMachine/SoMachine Motion software (All versions), that could cause a buffer overf...

  • EPSS 0.22%
  • Published 22.04.2020 19:15:11
  • Last modified 21.11.2024 05:37:14

A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.19%
  • Published 22.04.2020 19:15:11
  • Last modified 21.11.2024 05:37:14

A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists which could leak sensitive information transmitted between the software and the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.98%
  • Published 07.06.2017 19:29:00
  • Last modified 20.04.2025 01:37:25

A DLL Hijacking vulnerability in the programming software in Schneider Electric's SoMachine HVAC v2.1.0 allows a remote attacker to execute arbitrary code on the targeted system. The vulnerability exists due to the improper loading of a DLL.

  • EPSS 0.27%
  • Published 06.04.2017 21:59:00
  • Last modified 20.04.2025 01:37:25

Schneider Electric SoMachine Basic 1.4 SP1 and Schneider Electric Modicon TM221CE16R 1.3.3.3 devices have a hardcoded-key vulnerability. The Project Protection feature is used to prevent unauthorized users from opening an XML protected project file, ...

  • EPSS 2.19%
  • Published 01.02.2015 15:59:06
  • Last modified 05.09.2025 22:15:33

Stack-based buffer overflow in an unspecified DLL file in a DTM development kit in Schneider Electric Unity Pro, SoMachine, SoMove, SoMove Lite, Modbus Communication Library 2.2.6 and earlier, CANopen Communication Library 1.0.2 and earlier, EtherNet...

Exploit
  • EPSS 57.66%
  • Published 01.04.2014 06:17:08
  • Last modified 12.04.2025 10:46:40

Multiple stack-based buffer overflows in ModbusDrv.exe in Schneider Electric Modbus Serial Driver 1.10 through 3.2 allow remote attackers to execute arbitrary code via a large buffer-size value in a Modbus Application Header.