Description
A CWE-200: Information Exposure vulnerability exists in Modicon M580, Modicon BMENOC 0311, and Modicon BMENOC 0321, which could cause the disclosure of sensitive information when using specific Modbus services provided by the REST API of the controller/communication module.
Published: 2019-10-29
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-16403 A CWE-200: Information Exposure vulnerability exists in Modicon M580, Modicon BMENOC 0311, and Modicon BMENOC 0321, which could cause the disclosure of sensitive information when using specific Modbus services provided by the REST API of the controller/communication module.
History

No history.

Subscriptions

Schneider-electric Modicon Bmenoc 0311 Modicon Bmenoc 0311 Firmware Modicon Bmenoc 0321 Modicon Bmenoc 0321 Firmware Modicon M580 Modicon M580 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-08-04T20:31:04.468Z

Reserved: 2019-01-25T00:00:00.000Z

Link: CVE-2019-6849

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-10-29T19:15:22.407

Modified: 2024-11-21T04:47:16.557

Link: CVE-2019-6849

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses