CVE-2021-22816

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/01/2022
Last modified:
03/02/2022

Description

A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a Denial of Service of the RTU when receiving a specially crafted request over Modbus, and the RTU is configured as a Modbus server. Affected Products: SCADAPack 312E, 313E, 314E, 330E, 333E, 334E, 337E, 350E and 357E RTUs with firmware V8.18.1 and prior

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:schneider-electric:scadapack_312e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_312e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_313e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_313e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_314e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_314e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_330e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_330e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_333e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_333e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_334e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_334e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_337e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)
cpe:2.3:h:schneider-electric:scadapack_337e:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:scadapack_350e_firmware:*:*:*:*:*:*:*:* 8.19.1 (excluding)