A CWE-400: Uncontrolled Resource Consumption vulnerability exists that could cause a denial of service on ports 80 (HTTP) and 502 (Modbus), when sending a large number of TCP RST or FIN packets to any open TCP port of the PLC. Affected Product: Modicon M340 CPUs: BMXP34 (All Versions)

Project Subscriptions

Vendors Products
Schneider-electric Subscribe
Modicon M340 Bmxp341000 Subscribe
Modicon M340 Bmxp341000 Firmware Subscribe
Modicon M340 Bmxp342000 Subscribe
Modicon M340 Bmxp342000 Firmware Subscribe
Modicon M340 Bmxp342010 Subscribe
Modicon M340 Bmxp3420102 Subscribe
Modicon M340 Bmxp3420102 Firmware Subscribe
Modicon M340 Bmxp342010 Firmware Subscribe
Modicon M340 Bmxp342030 Subscribe
Modicon M340 Bmxp3420302 Subscribe
Modicon M340 Bmxp3420302 Firmware Subscribe
Modicon M340 Bmxp342030 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-27867 A CWE-400: Uncontrolled Resource Consumption vulnerability exists that could cause a denial of service on ports 80 (HTTP) and 502 (Modbus), when sending a large number of TCP RST or FIN packets to any open TCP port of the PLC. Affected Product: Modicon M340 CPUs: BMXP34 (All Versions)
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-08-03T03:21:49.119Z

Reserved: 2022-01-06T00:00:00

Link: CVE-2022-22724

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-04T23:15:13.160

Modified: 2024-11-21T06:47:19.670

Link: CVE-2022-22724

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses