QID 590936
Date Published: 2022-07-22
QID 590936: Schneider Electric MiCOM Px4x with Legacy Ethernet board Vulnerability (SEVD-2018-074-03)
Tested Versions
Within this list of product versions only products with CORTEC digit 9 = 8 (DNP3oE protocol) and last digit = J or K (Hardware version) are affected
MiCOM P14x version 46
MiCOM P44x version D6 excluding D6(E)
MiCOM P64x all versions
MiCOM P849 all versions
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
MiCOM Px4x (P540 range excluded) with legacy Ethernet board product could lose network communication in case of TCP/IP open requests on port 20000 (DNP3oE) if an older TCI/IP session is still open with identical IP address and port number
Solution
Customers are advised to refer to CERT MITIGATIONS section SEVD-2018-074-03 for affected packages and patching details.
Vendor References
- SEVD-2018-074-03 -
www.se.com/ww/en/download/document/SEVD-2018-074-03/
CVEs related to QID 590936
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SEVD-2018-074-03 |
|