Schneider-electric

Modicon M258 Firmware

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.35%
  • Veröffentlicht 11.07.2024 09:15:04
  • Zuletzt bearbeitet 21.11.2024 09:49:48

CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause a vulnerability leading to a cross-site scripting condition where attackers can have a victim’s browser run arbitrary J...

  • EPSS 0.28%
  • Veröffentlicht 11.12.2020 01:15:11
  • Zuletzt bearbeitet 21.11.2024 05:22:29

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Modicon M258 Firmware (All versions prior to V5.0.4.11) and SoMachine/SoMachine Motion software (All versions), that could cause a buffer overf...

  • EPSS 0.22%
  • Veröffentlicht 22.04.2020 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:37:14

A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.19%
  • Veröffentlicht 22.04.2020 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:37:14

A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists which could leak sensitive information transmitted between the software and the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.38%
  • Veröffentlicht 22.05.2019 20:29:02
  • Zuletzt bearbeitet 21.11.2024 04:47:13

A CWE-306: Missing Authentication for Critical Function vulnerability exists which could cause a modification of device IP configuration (IP address, network mask and gateway IP address) when a specific Ethernet frame is received in all versions of: ...