Showing 2 vulnerabilities on this page for Modicon Premium, Modicon Quantum, Modicon M340, BMXNOR0200

Signals CISA KEV Ransomware Nuclei
Schneider Electric SE vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Hard coded accounts exist in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions of the communication modules.

CWE-798Apr 18, 2018
CVSS9.8v3.0EPSS3.82%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Vulnerable hash algorithms exists in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions of the communication modules. The algorithm used to encrypt the password is vulnerable to hash collision attacks.

CWE-326Apr 18, 2018
CVSS9.8v3.0EPSS1.95%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX