A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the controller when using TFTP protocol.

Project Subscriptions

Vendors Products
Schneider-electric Subscribe
Modicon M340 Subscribe
Modicon M340 Firmware Subscribe
Modicon M580 Subscribe
Modicon M580 Firmware Subscribe
Tsxmcpc002m Subscribe
Tsxmcpc002m Firmware Subscribe
Tsxmcpc512k Subscribe
Tsxmcpc512k Firmware Subscribe
Tsxmfp0128p2 Subscribe
Tsxmfp0128p2 Firmware Subscribe
Tsxmfp064p2 Subscribe
Tsxmfp064p2 Firmware Subscribe
Tsxmfpp001m Subscribe
Tsxmfpp001m Firmware Subscribe
Tsxmfpp002m Subscribe
Tsxmfpp002m Firmware Subscribe
Tsxmfpp004m Subscribe
Tsxmfpp004m Firmware Subscribe
Tsxmfpp224k Subscribe
Tsxmfpp224k Firmware Subscribe
Tsxmfpp384k Subscribe
Tsxmfpp384k Firmware Subscribe
Tsxmfpp512k Subscribe
Tsxmfpp512k Firmware Subscribe
Tsxmrpc001m Subscribe
Tsxmrpc001m Firmware Subscribe
Tsxmrpc002m Subscribe
Tsxmrpc002m Firmware Subscribe
Tsxmrpc003m Subscribe
Tsxmrpc003m Firmware Subscribe
Tsxmrpc007m Subscribe
Tsxmrpc007m Firmware Subscribe
Tsxmrpc01m7 Subscribe
Tsxmrpc01m7 Firmware Subscribe
Tsxmrpc448k Subscribe
Tsxmrpc448k Firmware Subscribe
Tsxmrpc768k Subscribe
Tsxmrpc768k Firmware Subscribe
Tsxmrpf004m Subscribe
Tsxmrpf004m Firmware Subscribe
Tsxmrpf008m Subscribe
Tsxmrpf008m Firmware Subscribe
Tsxmrpp224k Subscribe
Tsxmrpp224k Firmware Subscribe
Tsxmrpp384k Subscribe
Tsxmrpp384k Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2019-16405 A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the controller when using TFTP protocol.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-08-04T20:31:04.388Z

Reserved: 2019-01-25T00:00:00

Link: CVE-2019-6851

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-10-29T19:15:22.563

Modified: 2024-11-21T04:47:16.780

Link: CVE-2019-6851

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses