A CWE-400: Uncontrolled Resource Consumption vulnerability exists that could cause a denial of service on ports 80 (HTTP) and 502 (Modbus), when sending a large number of TCP RST or FIN packets to any open TCP port of the PLC. Affected Product: Modicon M340 CPUs: BMXP34 (All Versions)
Project Subscriptions
| Vendors | Products |
|---|---|
|
Schneider-electric
Subscribe
|
Modicon M340 Bmxp341000
Subscribe
Modicon M340 Bmxp341000 Firmware
Subscribe
Modicon M340 Bmxp342000
Subscribe
Modicon M340 Bmxp342000 Firmware
Subscribe
Modicon M340 Bmxp342010
Subscribe
Modicon M340 Bmxp3420102
Subscribe
Modicon M340 Bmxp3420102 Firmware
Subscribe
Modicon M340 Bmxp342010 Firmware
Subscribe
Modicon M340 Bmxp342030
Subscribe
Modicon M340 Bmxp3420302
Subscribe
Modicon M340 Bmxp3420302 Firmware
Subscribe
Modicon M340 Bmxp342030 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-27867 | A CWE-400: Uncontrolled Resource Consumption vulnerability exists that could cause a denial of service on ports 80 (HTTP) and 502 (Modbus), when sending a large number of TCP RST or FIN packets to any open TCP port of the PLC. Affected Product: Modicon M340 CPUs: BMXP34 (All Versions) |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-08-03T03:21:49.119Z
Reserved: 2022-01-06T00:00:00
Link: CVE-2022-22724
No data.
Status : Modified
Published: 2022-02-04T23:15:13.160
Modified: 2024-11-21T06:47:19.670
Link: CVE-2022-22724
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD