CVE-2019-6816: Code Injection
Published May 22, 2019
·Updated
In Modicon Quantum all firmware versions, a CWE-94: Code Injection vulnerability could cause an unauthorized firmware modification with possible Denial of Service when using Modbus protocol.
Affected Software
2 affected components
Schneider-electric Modicon Quantum Firmware
Schneider-electric Modicon Quantum
Event History
May 22, 2019
CVE Published
via MITRE·07:54 PM
Data Sourced
via MITRE·07:54 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for Modicon Quantum firmware?
The vulnerability ID for Modicon Quantum firmware is CVE-2019-6816.
2
What is the severity of CVE-2019-6816?
The severity of CVE-2019-6816 is critical with a value of 9.1.
3
What is the CWE ID of CVE-2019-6816?
The CWE ID of CVE-2019-6816 is CWE-94.
4
How can the Code Injection vulnerability in Modicon Quantum firmware be exploited?
The Code Injection vulnerability in Modicon Quantum firmware can be exploited to cause an unauthorized firmware modification with possible Denial of Service when using Modbus protocol.
5
Where can I find more information about CVE-2019-6816?
More information about CVE-2019-6816 can be found at the following reference: https://www.schneider-electric.com/en/download/document/SEVD-2019-134-09/