CVE-2013-2763

Schneider Electric Modicon M340 BMX - Denial of Service via Uncontrolled Resource Consumption

Title source: llm
STIX 2.1

Description

The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it "could not be duplicated" and "an attacker could not remotely exploit this observed behavior to deny PLC control functions.

References (1)

Core 1
Core References
Broken Link, Third Party Advisory, US Government Resource x_refsource_misc
http://ics-cert.us-cert.gov/pdf/ICSA-13-077-01A.pdf

Scores

EPSS 0.0073
EPSS Percentile 73.0%

Details

CWE
CWE-400
Status published
Products (12)
schneider-electric/modicon_m340_bmx_noc_0401_firmware
schneider-electric/modicon_m340_bmx_noe_0100_firmware
schneider-electric/modicon_m340_bmx_noe_0100h_firmware
schneider-electric/modicon_m340_bmx_noe_0110_firmware
schneider-electric/modicon_m340_bmx_noe_0110h_firmware
schneider-electric/modicon_m340_bmx_nor_0200h_firmware
schneider-electric/modicon_m340_bmx_p34-2010_firmware
schneider-electric/modicon_m340_bmx_p34-2030_firmware
schneider-electric/modicon_m340_bmxp341000_firmware
schneider-electric/modicon_m340_bmxp342010_firmware
... and 2 more
Published Apr 04, 2013
Tracked Since Feb 18, 2026