Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-22746


Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position. This CVE ID is unique from CVE-2021-22742, CVE-2021-22744, CVE-2021-22745, and CVE-2021-22747.


Published

2021-05-26T20:15:09.423

Last Modified

2024-11-21T05:50:35.047

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.9 (LOW)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-754

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System schneider-electric triconex_model_3009_mp_firmware < 11.8.0 Yes
Hardware schneider-electric triconex_model_3009_mp - No
Operating System schneider-electric tcm_4351b_firmware < 11.5.1 Yes
Operating System schneider-electric tcm_4351b_firmware 11.7.0 Yes
Hardware schneider-electric tcm_4351b - No

References