CVE-2013-2763: Medium severity Schneider-electric Modicon M340 Bmx Noc 0401 Firmware vulnerability

Published Apr 4, 2013
·
Updated

DISPUTED The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it "could not be duplicated" and "an attacker could not remotely exploit this observed behavior to deny PLC control functions."

Affected Software

48 affected components
All of the following
Schneider-electric Modicon M340 Bmx Noc 0401 Firmware
Schneider-electric Modicon M340 Bmx Noc 0401
All of the following
Schneider-electric Modicon M340 Bmx Noe 0100 Firmware
Schneider-electric Modicon M340 Bmx Noe 0100
All of the following
Schneider-electric Modicon M340 Bmx Noe 0100h Firmware
Schneider-electric Modicon M340 Bmx Noe 0100h
All of the following
Schneider-electric Modicon M340 Bmx Noe 0110 Firmware
Schneider-electric Modicon M340 Bmx Noe 0110
All of the following
Schneider-electric Modicon M340 Bmx Noe 0110h Firmware
Schneider-electric Modicon M340 Bmx Noe 0110h
All of the following
Schneider-electric Modicon M340 Bmx Nor 0200h Firmware
Schneider-electric Modicon M340 Bmx Nor 0200h
All of the following
Schneider-electric Modicon M340 Bmx P34-2010 Firmware
Schneider-electric Modicon M340 Bmx P34-2010
All of the following
Schneider-electric Modicon M340 Bmx P34-2030 Firmware
Schneider-electric Modicon M340 Bmx P34-2030
All of the following
Schneider-electric Modicon M340 Bmxp341000 Firmware
Schneider-electric Modicon M340 Bmxp341000
All of the following
Schneider-electric Modicon M340 Bmxp342010 Firmware
Schneider-electric Modicon M340 Bmxp342010
All of the following
Schneider-electric Modicon M340 Bmxp342020 Firmware
Schneider-electric Modicon M340 Bmxp342020
All of the following
Schneider-electric Modicon M340 Bmxp342030 Firmware
Schneider-electric Modicon M340 Bmxp342030
Schneider-electric Modicon M340 Bmx Noc 0401 Firmware
Schneider-electric Modicon M340 Bmx Noc 0401
Schneider-electric Modicon M340 Bmx Noe 0100 Firmware
Schneider-electric Modicon M340 Bmx Noe 0100
Schneider-electric Modicon M340 Bmx Noe 0100h Firmware
Schneider-electric Modicon M340 Bmx Noe 0100h
Schneider-electric Modicon M340 Bmx Noe 0110 Firmware
Schneider-electric Modicon M340 Bmx Noe 0110
Schneider-electric Modicon M340 Bmx Noe 0110h Firmware
Schneider-electric Modicon M340 Bmx Noe 0110h
Schneider-electric Modicon M340 Bmx Nor 0200h Firmware
Schneider-electric Modicon M340 Bmx Nor 0200h
Schneider-electric Modicon M340 Bmx P34-2010 Firmware
Schneider-electric Modicon M340 Bmx P34-2010
Schneider-electric Modicon M340 Bmx P34-2030 Firmware
Schneider-electric Modicon M340 Bmx P34-2030
Schneider-electric Modicon M340 Bmxp341000 Firmware
Schneider-electric Modicon M340 Bmxp341000
Schneider-electric Modicon M340 Bmxp342010 Firmware
Schneider-electric Modicon M340 Bmxp342010
Schneider-electric Modicon M340 Bmxp342020 Firmware
Schneider-electric Modicon M340 Bmxp342020
Schneider-electric Modicon M340 Bmxp342030 Firmware
Schneider-electric Modicon M340 Bmxp342030

Event History

Apr 4, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Disputed
11:58 AM

Frequently Asked Questions

1

What is the severity of CVE-2013-2763?

CVE-2013-2763 is classified as a disputed vulnerability related to possible denial of service through resource consumption.

2

Who is affected by CVE-2013-2763?

CVE-2013-2763 primarily affects Schneider Electric Modicon M340 PLC modules, particularly those running specific firmware versions.

3

How do I fix CVE-2013-2763?

As the vendor disputes this issue, there are currently no confirmed patches or fixes for CVE-2013-2763.

4

What kind of attack does CVE-2013-2763 relate to?

CVE-2013-2763 relates to a potential remote denial of service attack targeting Schneider Electric Modicon M340 PLC modules.

5

Has the vendor acknowledged CVE-2013-2763?

The vendor, Schneider Electric, reportedly disputes the existence of CVE-2013-2763, claiming it could not be duplicated.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203