CVE-2021-22743: Low severity schneider electric triconex model 3009 mp vulnerability
Published May 26, 2021
·Updated
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex TCM 4351B installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriStation packets while the write-protect keyswitch is in the program position.
Affected Software
5 affected components
Schneider-electric Triconex Model 3009 Mp Firmware>=11.3.0<11.8.0
Schneider-electric Triconex Model 3009 Mp
Schneider-electric Tcm 4351b Firmware>=11.3.0<11.5.1
Schneider-electric Tcm 4351b Firmware=11.7.0
Schneider-electric Tcm 4351b
Event History
May 26, 2021
CVE Published
via MITRE·07:20 PM
Data Sourced
via MITRE·07:20 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-22743?
CVE-2021-22743 is classified as a medium severity vulnerability.
2
How do I fix CVE-2021-22743?
To fix CVE-2021-22743, update the Triconex TCM 4351B firmware to version 11.7.0 or later.
3
What systems are affected by CVE-2021-22743?
CVE-2021-22743 affects Triconex TCM 4351B installed on Tricon V11.3.x systems.
4
What is the impact of CVE-2021-22743?
The impact of CVE-2021-22743 can cause module resets when malformed TriStation packets are received.
5
Can CVE-2021-22743 be exploited remotely?
CVE-2021-22743 could potentially be exploited remotely if the vulnerable system is accessible over a network.