CVE-2013-2761: Buffer Overflow
The Schneider Electric M340 BMXNOE01xx and BMXP3420xx PLC modules allow remote authenticated users to cause a denial of service (module crash) via crafted FTP traffic, as demonstrated by the FileZilla FTP client.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2761?
CVE-2013-2761 is classified as a medium severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2013-2761?
To resolve CVE-2013-2761, users should apply the latest firmware updates released by Schneider Electric for the affected Modicon M340 PLC modules.
Who is affected by CVE-2013-2761?
CVE-2013-2761 affects users of Schneider Electric Modicon M340 BMXNOE01xx and BMXP3420xx PLC modules.
What kind of attack does CVE-2013-2761 involve?
CVE-2013-2761 involves a denial of service attack that can be triggered by sending crafted FTP traffic to the vulnerable modules.
Is CVE-2013-2761 remotely exploitable?
Yes, CVE-2013-2761 is remotely exploitable by authenticated users.