A CWE-787: Out-of-bounds Write vulnerability exists that could cause denial of service when an attacker sends a specially crafted HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules: BMXNOE0100 (H), BMXNOE0110 (H), BMXNOC0401, BMXNOR0200H RTU (All Versions), Modicon Premium Processors with integrated Ethernet (Copro): TSXP574634, TSXP575634, TSXP576634 (All Versions), Modicon Quantum Processors with Integrated Ethernet (Copro): 140CPU65xxxxx (All Versions), Modicon Quantum Communication Modules: 140NOE771x1, 140NOC78x00, 140NOC77101 (All Versions), Modicon Premium Communication Modules: TSXETY4103, TSXETY5103 (All Versions)

Project Subscriptions

Vendors Products
Schneider-electric Subscribe
140cpu65150 Subscribe
140cpu65150 Firmware Subscribe
140noc77101 Subscribe
140noc77101 Firmware Subscribe
140noc78x00 Subscribe
140noc78x00 Firmware Subscribe
140noe771x1 Subscribe
140noe771x1 Firmware Subscribe
Bmxnoc0401 Subscribe
Bmxnoc0401 Firmware Subscribe
Bmxnoe0100 Subscribe
Bmxnoe0100 Firmware Subscribe
Bmxnoe0110 Subscribe
Bmxnoe0110 Firmware Subscribe
Bmxnor0200h Rtu Subscribe
Bmxnor0200h Rtu Firmware Subscribe
Modicon M340 Bmxp342020 Subscribe
Modicon M340 Bmxp342020 Firmware Subscribe
Tsxety4103 Subscribe
Tsxety4103 Firmware Subscribe
Tsxety5103 Subscribe
Tsxety5103 Firmware Subscribe
Tsxp574634 Subscribe
Tsxp574634 Firmware Subscribe
Tsxp575634 Subscribe
Tsxp575634 Firmware Subscribe
Tsxp576634 Subscribe
Tsxp576634 Firmware Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-08-03T18:51:07.437Z

Reserved: 2021-01-06T00:00:00

Link: CVE-2021-22788

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-11T18:15:09.057

Modified: 2024-11-21T05:50:40.227

Link: CVE-2021-22788

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses