Known Vulnerabilities for Modicon M221 Firmware by Schneider-electric
Listed below are 10 of the newest known vulnerabilities associated with "Modicon M221 Firmware" by "Schneider-electric".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-28214 json | A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all references, all versions),... | 5.5 - MEDIUM | 2020-12-11 | 2022-02-03 |
| CVE-2020-7568 json | A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon M221 (all references, a... | 4.3 - MEDIUM | 2020-11-19 | 2022-02-04 |
| CVE-2020-7567 json | A CWE-311: Missing Encryption of Sensitive Data vulnerability exists in Modicon M221 (all references, all versions) that coul... | 5.7 - MEDIUM | 2020-11-19 | 2022-02-04 |
| CVE-2020-7566 json | A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow ... | 7.3 - HIGH | 2020-11-19 | 2022-02-03 |
| CVE-2020-7565 json | A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allo... | 7.3 - HIGH | 2020-11-19 | 2022-02-03 |
| CVE-2020-7489 json | A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability ex... | 9.8 - CRITICAL | 2020-04-22 | 2022-01-31 |
| CVE-2019-10953 json | ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have... | 7.5 - HIGH | 2019-04-17 | 2022-01-31 |
| CVE-2019-6820 json | A CWE-306: Missing Authentication for Critical Function vulnerability exists which could cause a modification of device IP co... | 8.2 - HIGH | 2019-05-22 | 2022-02-03 |
| CVE-2018-7823 json | A Environment (CWE-2) vulnerability exists in SoMachine Basic, all versions, and Modicon M221(all references, all versions pr... | 5.3 - MEDIUM | 2019-05-22 | 2022-01-31 |
| CVE-2018-7822 json | An Incorrect Default Permissions (CWE-276) vulnerability exists in SoMachine Basic, all versions, and Modicon M221(all refere... | 5.5 - MEDIUM | 2019-05-22 | 2022-01-31 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Schneider-electric | Modicon M221 Firmware | 1.6.2.0 | |||
| Operating System | Schneider-electric | Modicon M221 Firmware | 1.1.1.5 | |||
| Operating System | Schneider-electric | Modicon M221 Firmware | - |