Description
A CWE-787: Out-of-bounds Write vulnerability exists that could cause denial of service when an attacker sends a specially crafted HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules: BMXNOE0100 (H), BMXNOE0110 (H), BMXNOC0401, BMXNOR0200H RTU (All Versions), Modicon Premium Processors with integrated Ethernet (Copro): TSXP574634, TSXP575634, TSXP576634 (All Versions), Modicon Quantum Processors with Integrated Ethernet (Copro): 140CPU65xxxxx (All Versions), Modicon Quantum Communication Modules: 140NOE771x1, 140NOC78x00, 140NOC77101 (All Versions), Modicon Premium Communication Modules: TSXETY4103, TSXETY5103 (All Versions)
Published: 2022-02-11
Score: 7.5 High
EPSS: 1.4% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Schneider-electric 140cpu65150 140cpu65150 Firmware 140noc77101 140noc77101 Firmware 140noc78x00 140noc78x00 Firmware 140noe771x1 140noe771x1 Firmware Bmxnoc0401 Bmxnoc0401 Firmware Bmxnoe0100 Bmxnoe0100 Firmware Bmxnoe0110 Bmxnoe0110 Firmware Bmxnor0200h Rtu Bmxnor0200h Rtu Firmware Modicon M340 Bmxp342020 Modicon M340 Bmxp342020 Firmware Tsxety4103 Tsxety4103 Firmware Tsxety5103 Tsxety5103 Firmware Tsxp574634 Tsxp574634 Firmware Tsxp575634 Tsxp575634 Firmware Tsxp576634 Tsxp576634 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-08-03T18:51:07.437Z

Reserved: 2021-01-06T00:00:00.000Z

Link: CVE-2021-22788

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-11T18:15:09.057

Modified: 2024-11-21T05:50:40.227

Link: CVE-2021-22788

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses