ZeroHour

CVE-2023-25620

CVSS 3.1
6.5 medium
EPSS
<1%p46
Published
()
Modified
Description

A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause denial of service of the controller when a malicious project file is loaded onto the controller by an authenticated user.

Vendors
schneider-electric
Products
modicon m580 firmware, modicon m340 firmware, modicon momentum unity m1e processor firmware, modicon mc80 firmware, 140cpu65 firmware, tsxp57 firmware, bmep58s firmware, bmeh58s firmware
Weakness
CWE-754
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.