Schneider-electric

Modicon M218 Firmware

5 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.44%
  • Published 11.02.2022 18:15:09
  • Last modified 21.11.2024 05:50:41

A CWE-20: Improper Input Validation vulnerability exists that could cause a Denial of Service when a crafted packet is sent to the controller over network port 1105/TCP. Affected Product: Modicon M218 Logic Controller (V5.1.0.6 and prior)

  • EPSS 0.54%
  • Published 31.08.2020 17:15:12
  • Last modified 21.11.2024 05:37:18

Out-of-bounds Write vulnerability exists in Modicon M218 Logic Controller (V5.0.0.7 and prior) which could cause Denial of Service when sending specific crafted IPV4 packet to the controller: Sending a specific IPv4 protocol package to Schneider Elec...

  • EPSS 0.35%
  • Published 16.06.2020 20:15:15
  • Last modified 21.11.2024 05:37:16

A CWE-787: Out-of-bounds Write vulnerability exists in Modicon M218 Logic Controller (Firmware version 4.3 and prior), which may cause a Denial of Service when specific TCP/IP crafted packets are sent to the Modicon M218 Logic Controller.

  • EPSS 0.22%
  • Published 22.04.2020 19:15:11
  • Last modified 21.11.2024 05:37:14

A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.19%
  • Published 22.04.2020 19:15:11
  • Last modified 21.11.2024 05:37:14

A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists which could leak sensitive information transmitted between the software and the Modicon M218, M241, M251, and M258 controllers.