A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Modicon M258 Firmware (All versions prior to V5.0.4.11) and SoMachine/SoMachine Motion software (All versions), that could cause a buffer overflow when the length of a file transferred to the webserver is not verified.
2020-12-11T01:15:11.940
2024-11-21T05:22:29.963
Modified
CVSSv3.1: 6.8 (MEDIUM)
AV:A/AC:L/Au:S/C:P/I:P/A:P
5.1
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | schneider-electric | modicon_m258_firmware | < 5.0.4.11 | Yes |
Hardware | schneider-electric | modicon_m258 | - | No |
Application | schneider-electric | somachine | * | Yes |
Application | schneider-electric | somachine_motion | * | Yes |