CVE-2018-7794

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/01/2020
Last modified:
03/02/2022

Description

A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) which could cause a Denial of Service when reading data with invalid index using Modbus TCP.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:schneider-electric:modicon_m580_firmware:*:*:*:*:*:*:*:* 2.80 (excluding)
cpe:2.3:h:schneider-electric:modicon_m580:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:modicon_m340_firmware:*:*:*:*:*:*:*:* 3.01 (excluding)
cpe:2.3:h:schneider-electric:modicon_m340:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxh5744m_firmware:*:*:*:*:*:*:*:* 3.20 (excluding)
cpe:2.3:h:schneider-electric:tsxh5744m:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxh5724m_firmware:*:*:*:*:*:*:*:* 3.20 (excluding)
cpe:2.3:h:schneider-electric:tsxh5724m:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxp576634m_firmware:*:*:*:*:*:*:*:* 3.20 (excluding)
cpe:2.3:h:schneider-electric:tsxp576634m:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxp57554m_firmware:*:*:*:*:*:*:*:* 3.20 (excluding)
cpe:2.3:h:schneider-electric:tsxp57554m:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxp575634m_firmware:*:*:*:*:*:*:*:* 3.20 (excluding)
cpe:2.3:h:schneider-electric:tsxp575634m:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxp57454m_firmware:*:*:*:*:*:*:*:* 3.20 (excluding)


References to Advisories, Solutions, and Tools