First published: Fri Dec 11 2020(Updated: )
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications for affected versions), that could cause denial of service when a specially crafted Read Physical Memory request over Modbus is sent to the controller.
Credit: cybersecurity@se.com cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Modicon M580 Bmep584040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep584040 | ||
Schneider-electric Modicon M580 Bmep582040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep582040 | ||
Schneider-electric Modicon M580 Bmep586040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep586040 | ||
Schneider-electric Modicon M580 Bmep585040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep585040 | ||
Schneider-electric Modicon M580 Bmep582020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep582020 | ||
Schneider-electric Modicon M580 Bmep581020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep581020 | ||
Schneider-electric Modicon M580 Bmep584020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep584020 | ||
Schneider-electric Modicon M580 Bmep583040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep583040 | ||
Schneider-electric Modicon M580 Bmep583020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep583020 | ||
Schneider-electric Bmxp341000 Firmware | <3.30 | |
Schneider-electric Bmxp341000 | ||
Schneider-electric Bmxp342000 Firmware | <3.30 | |
Schneider-electric Bmxp342000 | ||
Schneider-electric Bmxp3420102 Firmware | <3.30 | |
Schneider-electric Bmxp3420102 | ||
Schneider-electric Bmxp3420102cl Firmware | <3.30 | |
Schneider-electric Bmxp3420102cl | ||
Schneider-electric Bmxp342020 Firmware | <3.30 | |
Schneider-electric Bmxp342020 | ||
Schneider-electric Bmxp3420302 Firmware | <3.30 | |
Schneider-electric Bmxp3420302 | ||
Schneider-electric Bmxp3420302cl Firmware | <3.30 | |
Schneider-electric Bmxp3420302cl | ||
Schneider-electric Tsxp574634 Firmware | ||
Schneider-electric Tsxp574634 | ||
Schneider-electric Tsxp575634 Firmware | ||
Schneider-electric Tsxp575634 | ||
Schneider-electric Tsxp576634 Firmware | ||
Schneider-electric Tsxp576634 | ||
Schneider-electric 140cpu65150 Firmware | ||
Schneider-electric 140cpu65150 | ||
All of | ||
Schneider-electric Modicon M580 Bmep584040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep584040 | ||
All of | ||
Schneider-electric Modicon M580 Bmep582040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep582040 | ||
All of | ||
Schneider-electric Modicon M580 Bmep586040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep586040 | ||
All of | ||
Schneider-electric Modicon M580 Bmep585040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep585040 | ||
All of | ||
Schneider-electric Modicon M580 Bmep582020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep582020 | ||
All of | ||
Schneider-electric Modicon M580 Bmep581020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep581020 | ||
All of | ||
Schneider-electric Modicon M580 Bmep584020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep584020 | ||
All of | ||
Schneider-electric Modicon M580 Bmep583040 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep583040 | ||
All of | ||
Schneider-electric Modicon M580 Bmep583020 Firmware | <3.20 | |
Schneider-electric Modicon M580 Bmep583020 | ||
All of | ||
Schneider-electric Modicon M340 Bmxp341000 Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp341000 | ||
All of | ||
Schneider-electric Modicon M340 Bmxp342000 Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp342000 | ||
All of | ||
Schneider-electric Modicon M340 Bmxp3420102 Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp3420102 | ||
All of | ||
Schneider-electric Modicon M340 Bmxp3420102cl Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp3420102cl | ||
All of | ||
Schneider-electric Modicon M340 Bmxp342020 Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp342020 | ||
All of | ||
Schneider-electric Modicon M340 Bmxp3420302 Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp3420302 | ||
All of | ||
Schneider-electric Modicon M340 Bmxp3420302cl Firmware | <3.30 | |
Schneider-electric Modicon M340 Bmxp3420302cl | ||
All of | ||
Schneider-electric Tsxp574634 Firmware | ||
Schneider-electric Tsxp574634 | ||
All of | ||
Schneider-electric Tsxp575634 Firmware | ||
Schneider-electric Tsxp575634 | ||
All of | ||
Schneider-electric Tsxp576634 Firmware | ||
Schneider-electric Tsxp576634 | ||
All of | ||
Schneider-electric 140cpu65150 Firmware | ||
Schneider-electric 140cpu65150 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-7542.
The severity of CVE-2020-7542 is high (7.5).
The Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium are affected by CVE-2020-7542 (see security notifications for affected versions).
CVE-2020-7542 poses a risk of denial of service when a specially crafted Read Physical Memor... request is processed.
You can find more information about CVE-2020-7542 at this URL: https://www.se.com/ww/en/download/document/SEVD-2020-343-08/