Vulnerabilities > CVE-2019-6813 - Improper Check for Unusual or Exceptional Conditions vulnerability in Schneider-Electric Bmxnor0200H Firmware and Modicon M340 Firmware
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in BMXNOR0200H Ethernet / Serial RTU module (all firmware versions) and Modicon M340 controller (all firmware versions), which could cause denial of service when truncated SNMP packets on port 161/UDP are received by the device.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 2 | |
Hardware | 2 |
Common Weakness Enumeration (CWE)
References
- https://security.cse.iitk.ac.in/responsible-disclosure
- https://www.schneider-electric.com/en/download/document/SEVD-2019-225-02/
- https://www.schneider-electric.com/en/download/document/SEVD-2019-225-03/
- https://security.cse.iitk.ac.in/responsible-disclosure
- https://www.schneider-electric.com/en/download/document/SEVD-2019-225-03/
- https://www.schneider-electric.com/en/download/document/SEVD-2019-225-02/