CVE-2019-6815: Critical severity schneider electric modicon quantum firmware vulnerability
Published May 22, 2019
·Updated
In Modicon Quantum all firmware versions, CWE-264: Permissions, Privileges, and Access Control vulnerabilities could cause a denial of service or unauthorized modifications of the PLC configuration when using Ethernet/IP protocol.
Affected Software
2 affected components
Schneider-electric Modicon Quantum Firmware
Schneider-electric Modicon Quantum
Event History
May 22, 2019
CVE Published
via MITRE·07:52 PM
Data Sourced
via MITRE·07:52 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-6815.
2
What is the name of the affected firmware?
The affected firmware is Modicon Quantum.
3
What type of vulnerability is this?
This vulnerability is categorized as CWE-264: Permissions, Privileges, and Access Control.
4
What is the potential impact of this vulnerability?
The potential impact of this vulnerability is a denial of service or unauthorized modifications of the PLC configuration when using Ethernet/IP protocol.
5
Is there a fix available for this vulnerability?
Please refer to the official Schneider Electric website for information on available fixes.