Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-34761


A CWE-476: NULL Pointer Dereference vulnerability exists that could cause a denial of service of the webserver when parsing JSON content type. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2.01 and later), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)


Published

2022-07-13T21:15:08.577

Last Modified

2024-11-21T07:10:08.173

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-476

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System schneider-electric opc_ua_module_for_m580_firmware ≤ 1.10 Yes
Hardware schneider-electric opc_ua_module_for_m580 - No
Operating System schneider-electric x80_advanced_rtu_module_firmware ≥ 2.01 Yes
Hardware schneider-electric x80_advanced_rtu_module - No

References