CVE-2013-0664

Schneider Electric Modicon Quantum, M340, and Premium - Authenticated Remote Code Execution via SOAP Modbus Messages

Title source: llm
STIX 2.1

Description

The FactoryCast service on the Schneider Electric Quantum 140NOE77111 and 140NWM10000, M340 BMXNOE0110x, and Premium TSXETY5103 PLC modules allows remote authenticated users to send Modbus messages, and consequently execute arbitrary code, by embedding these messages in SOAP HTTP POST requests.

Scores

EPSS 0.0116
EPSS Percentile 78.8%

Details

Status published
Products (4)
schneider-electric/modicon_m340 bmxnoe0110x
schneider-electric/modicon_premium tsxety5103
schneider-electric/modicon_quantum_plc 140noe77111
schneider-electric/modicon_quantum_plc 140nwm10000
Published Apr 04, 2013
Tracked Since Feb 18, 2026