A vulnerability exists in Schneider Electric's Modicon Quantum in all versions of the communication modules which could allow arbitrary code execution. An FTP command used to upgrade the firmware of the module can be misused to cause a denial of service, or in extreme cases, to load a malicious firmware.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published: 2018-04-18T20:00:00

Updated: 2024-08-05T06:24:11.250Z

Reserved: 2018-02-19T00:00:00

Link: CVE-2018-7240

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-04-18T20:29:00.247

Modified: 2019-10-03T00:03:26.223

Link: CVE-2018-7240

cve-icon Redhat

No data.