A CWE-269: Improper Privilege Management vulnerability exists that could cause a denial of service of the Ethernet communication of the controller when sending a specific request over SNMP. Affected products: Modicon M340 CPUs(BMXP34* versions prior to V3.40), Modicon M340 X80 Ethernet Communication modules:BMXNOE0100 (H), BMXNOE0110 (H), BMXNOR0200H RTU(BMXNOE* all versions)(BMXNOR* versions prior to v1.7 IR24)
Project Subscriptions
| Vendors | Products |
|---|---|
|
Schneider-electric
Subscribe
|
Modicon M340 Bmxnoe0100
Subscribe
Modicon M340 Bmxnoe0100 Firmware
Subscribe
Modicon M340 Bmxnoe0110
Subscribe
Modicon M340 Bmxnoe0110 Firmware
Subscribe
Modicon M340 Bmxnoe0110h
Subscribe
Modicon M340 Bmxnoe0110h Firmware
Subscribe
Modicon M340 Bmxnor0200h
Subscribe
Modicon M340 Bmxnor0200h Firmware
Subscribe
Modicon M340 Bmxp341000
Subscribe
Modicon M340 Bmxp341000 Firmware
Subscribe
Modicon M340 Bmxp342000
Subscribe
Modicon M340 Bmxp342000 Firmware
Subscribe
Modicon M340 Bmxp342010
Subscribe
Modicon M340 Bmxp3420102
Subscribe
Modicon M340 Bmxp3420102 Firmware
Subscribe
Modicon M340 Bmxp342010 Firmware
Subscribe
Modicon M340 Bmxp342020
Subscribe
Modicon M340 Bmxp342020 Firmware
Subscribe
Modicon M340 Bmxp342020h
Subscribe
Modicon M340 Bmxp342020h Firmware
Subscribe
Modicon M340 Bmxp342030
Subscribe
Modicon M340 Bmxp3420302
Subscribe
Modicon M340 Bmxp3420302 Firmware
Subscribe
Modicon M340 Bmxp3420302h
Subscribe
Modicon M340 Bmxp3420302h Firmware
Subscribe
Modicon M340 Bmxp342030 Firmware
Subscribe
Modicon M340 Bmxp342030h
Subscribe
Modicon M340 Bmxp342030h Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-15423 | A CWE-269: Improper Privilege Management vulnerability exists that could cause a denial of service of the Ethernet communication of the controller when sending a specific request over SNMP. Affected products: Modicon M340 CPUs(BMXP34* versions prior to V3.40), Modicon M340 X80 Ethernet Communication modules:BMXNOE0100 (H), BMXNOE0110 (H), BMXNOR0200H RTU(BMXNOE* all versions)(BMXNOR* versions prior to v1.7 IR24) |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.se.com/us/en/download/document/SEVD-2022-102-02/ |
|
History
Tue, 29 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-04-29T15:24:51.881Z
Reserved: 2022-01-13T00:00:00.000Z
Link: CVE-2022-0222
Updated: 2024-08-02T23:18:42.797Z
Status : Modified
Published: 2022-11-22T13:15:10.113
Modified: 2024-11-21T06:38:10.500
Link: CVE-2022-0222
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD