CVE-2020-7536
Summary
| CVE | CVE-2020-7536 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-12-11 01:15:00 UTC |
| Updated | 2020-12-14 20:42:00 UTC |
| Description | A CWE-754:Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M340 CPUs (BMXP34* versions prior to V3.30) Modicon M340 Communication Ethernet modules (BMXNOE0100 (H) versions prior to V3.4 BMXNOE0110 (H) versions prior to V6.6 BMXNOR0200H all versions), that could cause the device to be unreachable when modifying network parameters over SNMP. |
Risk And Classification
Problem Types: CWE-754
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Notification - SNMP Service on Modicon M340 and associated Communication Modules (2.0) | Schneider Electric | CONFIRM | www.se.com | Vendor Advisory |
| Responsible Disclosure | Indian Institute of Technology, Kanpur | MISC | security.cse.iitk.ac.in | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590788 Schneider Electric SNMP Service on Modicon M340 and associated Communication Modules Vulnerability (SEVD-2020-343-07)