Schneider-electric

Modicon M340 Bmxp341000h Firmware

7 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Published 14.02.2024 17:15:11
  • Last modified 23.01.2025 19:39:42

CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of service and loss of confidentiality, integrity of controllers when conducting a Man in the Middle att...

  • EPSS 0.58%
  • Published 18.04.2018 20:29:00
  • Last modified 21.11.2024 04:11:51

Hard coded accounts exist in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions of the communication modules.

  • EPSS 0.26%
  • Published 18.04.2018 20:29:00
  • Last modified 21.11.2024 04:11:51

Vulnerable hash algorithms exists in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions of the communication modules. The algorithm used to encrypt the password is vulnerable to hash collis...

  • EPSS 0.82%
  • Published 18.04.2018 20:29:00
  • Last modified 21.11.2024 04:12:40

A buffer overflow vulnerability exists in Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200. The buffer overflow vulnerability is caused by the length of the source string specified (instead of the buffer size) as th...

  • EPSS 0.15%
  • Published 18.04.2018 20:29:00
  • Last modified 21.11.2024 04:12:41

An authorization bypass vulnerability exists in Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200. Requests to CGI functions allow malicious users to bypass authorization.

  • EPSS 0.58%
  • Published 18.04.2018 20:29:00
  • Last modified 21.11.2024 04:12:41

A vulnerability exists in the HTTP request parser in Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200 which could allow arbitrary code execution.

  • EPSS 0.82%
  • Published 18.04.2018 20:29:00
  • Last modified 21.11.2024 04:12:41

A vulnerability exists in the web services to process SOAP requests in Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200 which could allow result in a buffer overflow.