CVE-2018-7853

CWE-7543 documents3 sources
Severity
7.5HIGH
EPSS
0.4%
top 40.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 22
Latest updateMay 24

Description

A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause denial of service when reading invalid physical memory blocks in the controller over Modbus

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

CVEListV5modicon_m580_modicon_m340_modicon_quantum_modicon_premiumModicon M580 Modicon M340 Modicon Quantum Modicon Premium

🔴Vulnerability Details

2
GHSA
GHSA-fhc3-g4v6-vmpr: A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could2022-05-24
CVEList
CVE-2018-7853: A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could2019-05-22