A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modicon M218, M241, M251, and M258 controllers.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Schneider-electric
Subscribe
|
Ecostruxure Machine Expert
Subscribe
Modicon M218
Subscribe
Modicon M218 Firmware
Subscribe
Modicon M241
Subscribe
Modicon M241 Firmware
Subscribe
Modicon M251
Subscribe
Modicon M251 Firmware
Subscribe
Modicon M258
Subscribe
Modicon M258 Firmware
Subscribe
Somachine
Subscribe
Somachine Motion
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-28612 | A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modicon M218, M241, M251, and M258 controllers. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.se.com/ww/en/download/document/SEVD-2020-105-02 |
|
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-08-04T09:33:18.793Z
Reserved: 2020-01-21T00:00:00
Link: CVE-2020-7487
No data.
Status : Modified
Published: 2020-04-22T19:15:11.653
Modified: 2024-11-21T05:37:14.580
Link: CVE-2020-7487
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD