QID 591065

Date Published: 2022-09-30

QID 591065: Schneider Electric Modicon M258 Logic Controllers Vulnerability (SEVD-2020-343-09)

AFFECTED PRODUCTS
Modicon M258 Firmware All versions prior to V5.0.4.11

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

Successful exploitation of this vulnerability may risk buffer overflow attack, which could result in arbitrary code execution or unavailability of the process or operations.

  • CVSS V3 rated as High - 6.8 severity.
  • CVSS V2 rated as Medium - 5.2 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section SEVD-2020-343-09 for affected packages and patching details.

    Vendor References

    CVEs related to QID 591065

    Software Advisories
    Advisory ID Software Component Link