First published: Wed Jul 13 2022(Updated: )
A CWE-787: Out-of-bounds Write vulnerability exists that could cause a denial of service of the webserver due to improper parsing of the HTTP Headers. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Opc Ua Module For M580 Firmware | <=1.10 | |
Schneider-electric Opc Ua Module For M580 | ||
Schneider-electric X80 Advanced Rtu Module Firmware | =1.0 | |
Schneider-electric X80 Advanced Rtu Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-34759 has a severity rating that may lead to a denial of service due to out-of-bounds write vulnerabilities.
To fix CVE-2022-34759, users should update the affected Schneider Electric products to the latest firmware versions.
CVE-2022-34759 affects the X80 Advanced RTU Communication Module (V1.0) and the OPC UA Modicon Communication Module (V1.10 and prior).
CVE-2022-34759 is categorized as a CWE-787: Out-of-bounds Write vulnerability.
The consequences of CVE-2022-34759 can include a denial of service of the webserver due to improper HTTP header parsing.