CVE-2018-7850

MEDIUM

Modicon M580, M340, Quantum, and Premium Firmware - Reliance on Untrusted Inputs in a Security Decision

Title source: llm
STIX 2.1

Description

A CWE-807: Reliance on Untrusted Inputs in a Security Decision vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause invalid information displayed in Unity Pro software.

References (2)

Core 2

Scores

CVSS v3 5.3
EPSS 0.0021
EPSS Percentile 43.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

Status published
Products (4)
schneider-electric/modicon_m340_firmware
schneider-electric/modicon_m580_firmware
schneider-electric/modicon_premium_firmware
schneider-electric/modicon_quantum_firmware
Published May 22, 2019
Tracked Since Feb 18, 2026