Description
On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, crafted ModBus packets can bypass the ModBus enforcer. NOTE: this issue exists because of an incomplete fix of CVE-2017-11401.
Published: 2022-04-03
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-17009 On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, crafted ModBus packets can bypass the ModBus enforcer. NOTE: this issue exists because of an incomplete fix of CVE-2017-11401.
History

No history.

Subscriptions

Belden Eagle 20 Tofino 943 987-501-tx\/tx Eagle 20 Tofino 943 987-501-tx\/tx Firmware Eagle 20 Tofino 943 987-502 -tx\/mm Eagle 20 Tofino 943 987-502 -tx\/mm Firmware Eagle 20 Tofino 943 987-504-mm\/tx Eagle 20 Tofino 943 987-504-mm\/tx Firmware Eagle 20 Tofino 943 987-505-mm\/mm Eagle 20 Tofino 943 987-505-mm\/mm Firmware Tofino Argon Fa-tsa-100-tx\/tx Tofino Argon Fa-tsa-100-tx\/tx Firmware Tofino Argon Fa-tsa-220-mm\/mm Tofino Argon Fa-tsa-220-mm\/mm Firmware Tofino Argon Fa-tsa-220-mm\/tx Tofino Argon Fa-tsa-220-mm\/tx Firmware Tofino Argon Fa-tsa-220-tx\/mm Tofino Argon Fa-tsa-220-tx\/mm Firmware Tofino Argon Fa-tsa-220-tx\/tx Tofino Argon Fa-tsa-220-tx\/tx Firmware Tofino Xenon Security Appliance Tofino Xenon Security Appliance Firmware
Schneider-electric Tcsefea23f3f20 Tcsefea23f3f20 Firmware Tcsefea23f3f21 Tcsefea23f3f21 Firmware Tcsefea23f3f22 Tcsefea23f3f22 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-03T22:24:59.526Z

Reserved: 2021-04-02T00:00:00.000Z

Link: CVE-2021-30065

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-04-03T22:15:14.943

Modified: 2024-11-21T06:03:17.350

Link: CVE-2021-30065

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses