TROYANOSYVIRUS
Back to CVEs

CVE-2018-7809

N/A

Description

An Unverified Password Change vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 which could allow an unauthenticated remote user to access the password delete function of the web server.

CVE Details

CVSS v3.1 ScoreN/A
Published11/30/2018
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

schneider-electric:modicom_bmxnor0200hschneider-electric:modicom_bmxnor0200h_firmwareschneider-electric:modicom_m340schneider-electric:modicom_m340_firmwareschneider-electric:modicom_premiumschneider-electric:modicom_premium_firmwareschneider-electric:modicom_quantumschneider-electric:modicom_quantum_firmware

Weaknesses (CWE)

CWE-640

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.