Description
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service atack on the PLC when upgrading the controller with a firmware package containing an invalid web server image using FTP protocol.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-16398 | A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service atack on the PLC when upgrading the controller with a firmware package containing an invalid web server image using FTP protocol. |
References
| Link | Providers |
|---|---|
| https://www.se.com/ww/en/download/document/SEVD-2019-281-02/ |
|
History
No history.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-08-04T20:31:04.430Z
Reserved: 2019-01-25T00:00:00.000Z
Link: CVE-2019-6844
No data.
Status : Modified
Published: 2019-10-29T19:15:22.047
Modified: 2024-11-21T04:47:15.937
Link: CVE-2019-6844
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD