First published: Mon Mar 23 2020(Updated: )
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module 140NOE771x1 (Versions 7.0 and prior), Quantum processors with integrated Ethernet – 140CPU65xxxxx (all Versions), and Premium processors with integrated Ethernet (all Versions), which could cause a Denial of Service when sending a specially crafted command over Modbus.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric 140noe77101 Firmware | <=7.0 | |
Schneider-electric 140noe77101 | ||
Schneider-electric 140noe77111 Firmware | <=7.0 | |
Schneider-electric 140noe77111 | ||
Schneider-electric Tsxh5744m Firmware | ||
Schneider-electric Tsxh5744m | ||
Schneider-electric Tsxh5724m Firmware | ||
Schneider-electric Tsxh5724m | ||
Schneider-electric Tsxp576634m Firmware | ||
Schneider-electric Tsxp576634m | ||
Schneider-electric Tsxp57554m Firmware | ||
Schneider-electric Tsxp57554m | ||
Schneider-electric Tsxp575634m Firmware | ||
Schneider-electric Tsxp575634m | ||
Schneider-electric Tsxp57454m Firmware | ||
Schneider-electric Tsxp57454m | ||
Schneider-electric Tsxp574634m Firmware | ||
Schneider-electric Tsxp574634m | ||
Schneider-electric Tsxp573634m Firmware | ||
Schneider-electric Tsxp573634m | ||
Schneider-electric Tsxp57304m Firmware | ||
Schneider-electric Tsxp57304m | ||
Schneider-electric Tsxp57254m Firmware | ||
Schneider-electric Tsxp57254m | ||
Schneider-electric Tsxp572634m Firmware | ||
Schneider-electric Tsxp572634m | ||
Schneider-electric Tsxp57204m Firmware | ||
Schneider-electric Tsxp57204m | ||
Schneider-electric Tsxp571634m Firmware | ||
Schneider-electric Tsxp571634m | ||
Schneider-electric Tsxp57154m Firmware | ||
Schneider-electric Tsxp57154m | ||
Schneider-electric Tsxp57104m Firmware | ||
Schneider-electric Tsxp57104m | ||
Schneider-electric 140cpu65150 Firmware | ||
Schneider-electric 140cpu65150 | ||
Schneider-electric 140cpu65160 Firmware | ||
Schneider-electric 140cpu65160 | ||
Schneider-electric 140cpu65260 Firmware | ||
Schneider-electric 140cpu65260 | ||
Schneider-electric 140cpu67261 Firmware | ||
Schneider-electric 140cpu67261 | ||
Schneider-electric 140cpu67060 Firmware | ||
Schneider-electric 140cpu67060 | ||
Schneider-electric 140cpu67160 Firmware | ||
Schneider-electric 140cpu67160 | ||
Schneider-electric 140cpu67260 Firmware | ||
Schneider-electric 140cpu67260 | ||
Schneider-electric 140cpu65860 Firmware | ||
Schneider-electric 140cpu65860 | ||
Schneider-electric 140cpu67861 Firmware | ||
Schneider-electric 140cpu67861 | ||
Schneider-electric 140cpu65160s Firmware | ||
Schneider-electric 140cpu65160s | ||
Schneider-electric 140cpu67160s Firmware | ||
Schneider-electric 140cpu67160s |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-7477 is high with a severity value of 7.5.
Versions 7.0 and prior of the Quantum Ethernet Network module 140NOE771x1, Quantum processors with integrated Ethernet – 140CPU65xxxxx, and Premium processors with integrated Ethernet are affected by CVE-2020-7477.
To fix CVE-2020-7477, update the affected software versions to a version higher than 7.0.
The CWE-ID of CVE-2020-7477 is CWE-754.
You can find more information about CVE-2020-7477 at the following link: [CVE-2020-7477](https://www.se.com/ww/en/download/document/SEVD-2020-070-02/)