An Environment (CWE-2) vulnerability exists in SoMachine Basic, all versions, and Modicon M221(all references, all versions prior to firmware V1.10.0.0) which could cause cycle time impact when flooding the M221 ethernet interface while the Ethernet/IP adapter is activated.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HSchneider Electric Modicon M221
HWSchneider-Electricall versionsSchneider Electric Modicon M221 Firmware
OSSchneider-Electric< 1.10.0.0Schneider Electric Somachine Basic
APPSchneider-Electricall versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2020-7489CRITICAL9.8PL ✓same product
Podatność Injection w oprogramowaniu Schneider Electric – podstawianie DLL
CVE-2018-7791CRITICAL9.8PL ✓same product
Nieautoryzowane nadpisanie hasła w Schneider Electric Modicon M221
CVE-2018-7790CRITICAL9.8PL ✓same product
Replay attack na uwierzytelnianie w Schneider Electric Modicon M221
CVE-2020-7565HIGH7.3same product
A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) ...
CVE-2020-7566HIGH7.3same product
A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) th...