← Retour aux CVEs
CVE-2020-7524
HIGH7.5
Description
Out-of-bounds Write vulnerability exists in Modicon M218 Logic Controller (V5.0.0.7 and prior) which could cause Denial of Service when sending specific crafted IPV4 packet to the controller: Sending a specific IPv4 protocol package to Schneider Electric Modicon M218 Logic Controller can cause IPv4 devices to go down. The device does not work properly and must be powered back on to return to normal.
Details CVE
Score CVSS v3.17.5
SeveriteHIGH
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie8/31/2020
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0
Produits affectes
schneider-electric:modicon_m218schneider-electric:modicon_m218_firmware
Faiblesses (CWE)
CWE-787
References
https://www.se.com/ww/en/download/document/SEVD-2020-224-03/(cybersecurity@se.com)
https://www.se.com/ww/en/download/document/SEVD-2020-224-03/(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.