Vulnerabilities > Schneider Electric > Modicon Quantum > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-05-22 CVE-2019-6816 Code Injection vulnerability in Schneider-Electric Modicon Quantum Firmware
In Modicon Quantum all firmware versions, a CWE-94: Code Injection vulnerability could cause an unauthorized firmware modification with possible Denial of Service when using Modbus protocol.
network
low complexity
schneider-electric CWE-94
6.4
2019-05-22 CVE-2019-6815 Unspecified vulnerability in Schneider-Electric Modicon Quantum Firmware
In Modicon Quantum all firmware versions, CWE-264: Permissions, Privileges, and Access Control vulnerabilities could cause a denial of service or unauthorized modifications of the PLC configuration when using Ethernet/IP protocol.
network
low complexity
schneider-electric
6.4
2019-05-22 CVE-2018-7788 Credentials Management vulnerability in Schneider-Electric Modicon Quantum Firmware
A CWE-255 Credentials Management vulnerability exists in Modicon Quantum with firmware versions prior to V2.40.
network
low complexity
schneider-electric CWE-255
4.0