Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-7543


A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications for affected versions), that could cause denial of service when a specially crafted Read Physical Memory request over Modbus is sent to the controller.


Published

2020-12-11T01:15:12.580

Last Modified

2024-11-21T05:37:20.977

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-754

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System schneider-electric modicon_m580_bmep584040_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep584040 - No
Operating System schneider-electric modicon_m580_bmep582040_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep582040 - No
Operating System schneider-electric modicon_m580_bmep586040_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep586040 - No
Operating System schneider-electric modicon_m580_bmep585040_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep585040 - No
Operating System schneider-electric modicon_m580_bmep582020_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep582020 - No
Operating System schneider-electric modicon_m580_bmep581020_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep581020 - No
Operating System schneider-electric modicon_m580_bmep584020_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep584020 - No
Operating System schneider-electric modicon_m580_bmep583040_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep583040 - No
Operating System schneider-electric modicon_m580_bmep583020_firmware < 3.20 Yes
Hardware schneider-electric modicon_m580_bmep583020 - No
Operating System schneider-electric modicon_m340_bmxp341000_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp341000 - No
Operating System schneider-electric modicon_m340_bmxp342000_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp342000 - No
Operating System schneider-electric modicon_m340_bmxp3420102_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp3420102 - No
Operating System schneider-electric modicon_m340_bmxp3420102cl_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp3420102cl - No
Operating System schneider-electric modicon_m340_bmxp342020_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp342020 - No
Operating System schneider-electric modicon_m340_bmxp3420302_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp3420302 - No
Operating System schneider-electric modicon_m340_bmxp3420302cl_firmware < 3.30 Yes
Hardware schneider-electric modicon_m340_bmxp3420302cl - No

References