First published: Sat Dec 17 2011(Updated: )
The modbus_125_handler function in the Schneider Electric Quantum Ethernet Module on the NOE 771 device (aka the Quantum 140NOE771* module) allows remote attackers to install arbitrary firmware updates via a MODBUS 125 function code to TCP port 502.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric Quantum Ethernet Module 140NOE77101 | <=4.9 | |
Schneider Electric Quantum Ethernet Module 140NOE77100 | <=3.3 | |
Schneider Electric Quantum Ethernet Module 140NOE77100 | <=3.4 | |
Schneider Electric Quantum Ethernet Module 140NOE77111 | <=5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4861 has a high severity rating due to the potential for remote attackers to install arbitrary firmware updates.
Mitigation for CVE-2011-4861 includes restricting access to TCP port 502 and applying any available firmware updates from Schneider Electric.
CVE-2011-4861 affects Schneider Electric Quantum Ethernet Modules including 140NOE77100, 140NOE77101, and 140NOE77111.
CVE-2011-4861 can be exploited by remote attackers to perform unauthorized firmware updates through MODBUS 125 function code.
Yes, Schneider Electric provides firmware updates as a patch for the vulnerabilities described in CVE-2011-4861.