ZeroHour

CVE-2018-7759

CVSS 3.0
7.5 high
EPSS
1%p69
Published
()
Modified
Description

A buffer overflow vulnerability exists in Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200. The buffer overflow vulnerability is caused by the length of the source string specified (instead of the buffer size) as the number of bytes to be copied.

Vendors
schneider-electric
Products
bmxnor0200 firmware, bmxnor0200h firmware, 140cpu65150 firmware, 140cpu31110 firmware, 140cpu43412u firmware, 140cpu65160 firmware, 140cpu65260 firmware, 140cpu65860 firmware, 140cpu65160s firmware, 140cpu65150c firmware, 140cpu31110c firmware, 140cpu43412uc firmware
Weakness
CWE-119
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.