Description
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the controller with an empty firmware package using FTP protocol.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-16397 | A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the controller with an empty firmware package using FTP protocol. |
References
| Link | Providers |
|---|---|
| https://www.se.com/ww/en/download/document/SEVD-2019-281-02/ |
|
History
No history.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-08-04T20:31:04.371Z
Reserved: 2019-01-25T00:00:00.000Z
Link: CVE-2019-6843
No data.
Status : Modified
Published: 2019-10-29T19:15:21.987
Modified: 2024-11-21T04:47:15.820
Link: CVE-2019-6843
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD