CVE-2023-25620

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/04/2023
Last modified:
12/05/2023

Description

<br /> <br /> <br /> A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that<br /> could cause denial of service of the controller when a malicious project file is loaded onto the<br /> controller by an authenticated user. <br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:schneider-electric:modicon_m580_firmware:*:*:*:*:*:*:*:* 4.10 (excluding)
cpe:2.3:h:schneider-electric:modicon_m580:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:modicon_m340_firmware:*:*:*:*:*:*:*:* 3.51 (excluding)
cpe:2.3:h:schneider-electric:modicon_m340:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:modicon_momentum_unity_m1e_processor_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:modicon_momentum_unity_m1e_processor:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:modicon_mc80_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:modicon_mc80:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:140cpu65_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:140cpu65:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:tsxp57_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tsxp57:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:bmep58s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmep58s:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:bmeh58s_firmware:*:*:*:*:*:*:*:*