Schneider-Electric Modicon 140CRA

CPE Details

Schneider-Electric Modicon 140CRA
-
2019-12-12
17h31 +00:00
2019-12-12
17h31 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:h:schneider-electric:modicon_140cra:-:*:*:*:*:*:*:*

Informations

Vendor

schneider-electric

Product

modicon_140cra

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-6847 2019-10-29 13h52 +00:00 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the FTP service when upgrading the firmware with a version incompatible with the application in the controller using FTP protocol.
4.9
Medium
CVE-2019-6846 2019-10-29 13h51 +00:00 A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause information disclosure when using the FTP protocol.
6.5
Medium
CVE-2019-6844 2019-10-29 13h48 +00:00 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service atack on the PLC when upgrading the controller with a firmware package containing an invalid web server image using FTP protocol.
4.9
Medium
CVE-2019-6843 2019-10-29 13h48 +00:00 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the controller with an empty firmware package using FTP protocol.
4.9
Medium
CVE-2019-6842 2019-10-29 13h47 +00:00 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the firmware with a missing web server image inside the package using FTP protocol.
4.9
Medium
CVE-2019-6841 2019-10-29 13h46 +00:00 A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA modules (all firmware versions), which could cause a Denial of Service attack on the PLC when upgrading the firmware with no firmware image inside the package using FTP protocol.
4.9
Medium