CVE-2019-6830: High severity schneider electric modicon m580 firmware vulnerability
Published Sep 17, 2019
·Updated
A CWE-248: Uncaught Exception vulnerability exists IN Modicon M580 all versions prior to V2.80, which could cause a possible denial of service when sending an appropriately timed HTTP request to the controller.
Affected Software
2 affected components
Schneider-electric Modicon M580 Firmware<2.80
Schneider-electric Modicon M580
Event History
Sep 17, 2019
CVE Published
via MITRE·07:21 PM
Data Sourced
via MITRE·07:21 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this Modicon M580 vulnerability?
The vulnerability ID of this Modicon M580 vulnerability is CVE-2019-6830.
2
What is the severity level of CVE-2019-6830?
The severity level of CVE-2019-6830 is high with a CVSS score of 5.9.
3
What is the description of CVE-2019-6830?
CVE-2019-6830 is a CWE-248: Uncaught Exception vulnerability that exists in Modicon M580 all versions prior to V2.80, which could cause a possible denial of service when sending an appropriately timed HTTP request to the controller.
4
Which software versions are affected by CVE-2019-6830?
Modicon M580 firmware versions prior to V2.80 are affected by CVE-2019-6830.
5
How can CVE-2019-6830 be fixed?
To fix CVE-2019-6830, users should update to Modicon M580 firmware version 2.80 or later.