CVE-2020-7491: Critical severity schneider electric tricon tcm 4351 firmware vulnerability
VERSION NOT SUPPORTED WHEN ASSIGNED A legacy debug port account in TCMs installed in Tricon system versions 10.2.0 through 10.5.3 is visible on the network and could allow inappropriate access. This vulnerability was remediated in TCM version 10.5.4.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-7491?
CVE-2020-7491 is a vulnerability found in Tricon system versions 10.2.0 through 10.5.3.
How severe is CVE-2020-7491?
CVE-2020-7491 has a severity value of 7.5 (High).
Which software versions are affected by CVE-2020-7491?
CVE-2020-7491 affects Tricon system versions 10.2.0 through 10.5.3.
How can I fix CVE-2020-7491?
CVE-2020-7491 can be fixed by updating to TCM version 10.5.4.
Where can I find more information about CVE-2020-7491?
More information about CVE-2020-7491 can be found at the following references: [https://us-cert.cisa.gov/ics/advisories/icsa-20-205-01](https://us-cert.cisa.gov/ics/advisories/icsa-20-205-01) and [https://www.se.com/ww/en/download/document/SESB-2020-105-01/](https://www.se.com/ww/en/download/document/SESB-2020-105-01/).