First published: Wed Jul 13 2022(Updated: )
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause denial of service when parsing the URL. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric OPC UA Module for M580 Firmware | <=1.10 | |
Schneider Electric OPC UA Module for M580 Firmware | ||
Schneider-electric X80 Advanced Rtu Module | =1.0 | |
Schneider-electric X80 Advanced Rtu Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-34764 is classified as moderate due to the potential for denial of service.
To fix CVE-2022-34764, update the firmware of the affected Schneider Electric modules to the latest version.
CVE-2022-34764 affects the X80 Advanced RTU Communication Module (BMENOR2200H) version 1.0 and OPC UA Modicon Communication Module (BMENUA0100) versions up to 1.10.
CVE-2022-34764 is categorized as a CWE-119 vulnerability, indicating an improper restriction of operations within the bounds of a memory buffer.
The primary consequence of CVE-2022-34764 is a denial of service, which can disrupt the functionality of the affected modules.