CVE-2019-6821
published 2019-05-22CVE-2019-6821: CWE-330: Use of Insufficiently Random Values vulnerability, which could cause the hijacking of the TCP connection when using Ethernet communication in Modicon…
PriorityP434medium6.5CVSS 3.1
AVNACLPRNUINSUCLILAN
EPSS
1.93%
77.6th percentile
CWE-330: Use of Insufficiently Random Values vulnerability, which could cause the hijacking of the TCP connection when using Ethernet communication in Modicon M580 firmware versions prior to V2.30, and all firmware versions of Modicon M340, Modicon Premium, Modicon Quantum.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| schneider-electric | modicon_m580_firmware | < 2.30 | 2.30 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pr9h-xjrf-gjcr: CWE-330: Use of Insufficiently Random Values vulnerability, which could cause the hijacking of the TCP connection when using Ethernet communication in
ghsa_unreviewed·2022-05-24
CVE-2019-6821 [HIGH] CWE-330 GHSA-pr9h-xjrf-gjcr: CWE-330: Use of Insufficiently Random Values vulnerability, which could cause the hijacking of the TCP connection when using Ethernet communication in
CWE-330: Use of Insufficiently Random Values vulnerability, which could cause the hijacking of the TCP connection when using Ethernet communication in Modicon M580 firmware versions prior to V2.30, and all firmware versions of Modicon M340, Modicon Premium, Modicon Quantum.
CISA ICS
Schneider Electric Modicon Controllers
cisa_ics·2019-06-18·CVSS 6.5
[MEDIUM] Schneider Electric Modicon Controllers
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Schneider Electric Modicon Controllers
Last RevisedJune 18, 2019
Alert CodeICSA-19-136-01
## 1. EXECUTIVE SUMMARY
-
CVSS v3 5.4
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: Schneider Electric
- Equipment: Modicon M580, Modicon M340, Modicon Premium, and Modicon Quantum
- Vulnerability: Use of Insufficiently Random Values
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow an attacker to hijack TCP connections or cause information leakage.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
The following versions of Modi
No detection rules found.
No public exploits indexed.
http://www.securityfocus.com/bid/108366https://ics-cert.us-cert.gov/advisories/ICSA-19-136-01https://www.schneider-electric.com/en/download/document/SEVD-2019-134-03/http://www.securityfocus.com/bid/108366https://ics-cert.us-cert.gov/advisories/ICSA-19-136-01https://www.schneider-electric.com/en/download/document/SEVD-2019-134-03/
2019-05-22
Published