An Environment (CWE-2) vulnerability exists in SoMachine Basic, all versions, and Modicon M221(all references, all versions prior to firmware V1.10.0.0) which could cause cycle time impact when flooding the M221 ethernet interface while the Ethernet/IP adapter is activated.
oryginał ENCVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HSchneider Electric Modicon M221
HWSchneider-Electricwszystkie wersjeSchneider Electric Modicon M221 Firmware
OSSchneider-Electric< 1.10.0.0Schneider Electric Somachine Basic
APPSchneider-Electricwszystkie wersje
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Powiązane podatności
CVE-2020-7489CRITICAL9.8PL ✓ten sam produkt
Podatność Injection w oprogramowaniu Schneider Electric – podstawianie DLL
CVE-2018-7791CRITICAL9.8PL ✓ten sam produkt
Nieautoryzowane nadpisanie hasła w Schneider Electric Modicon M221
CVE-2018-7790CRITICAL9.8PL ✓ten sam produkt
Replay attack na uwierzytelnianie w Schneider Electric Modicon M221
CVE-2020-7565HIGH7.3ten sam produkt
A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) ...
CVE-2020-7566HIGH7.3ten sam produkt
A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) th...