Description
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the firmware with a missing web server image inside the package using FTP protocol.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-16396 | A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the firmware with a missing web server image inside the package using FTP protocol. |
References
| Link | Providers |
|---|---|
| https://www.se.com/ww/en/download/document/SEVD-2019-281-02/ |
|
History
No history.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-08-04T20:31:04.358Z
Reserved: 2019-01-25T00:00:00.000Z
Link: CVE-2019-6842
No data.
Status : Modified
Published: 2019-10-29T19:15:21.923
Modified: 2024-11-21T04:47:15.700
Link: CVE-2019-6842
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD