CVE-2019-6815

CRITICAL

Modicon Quantum Firmware - Denial of Service or Unauthorized Configuration Modification via Ethernet/IP Protocol

Title source: llm
STIX 2.1

Description

In Modicon Quantum all firmware versions, CWE-264: Permissions, Privileges, and Access Control vulnerabilities could cause a denial of service or unauthorized modifications of the PLC configuration when using Ethernet/IP protocol.

References (1)

Core 1
Core References

Scores

CVSS v3 9.1
EPSS 0.0037
EPSS Percentile 59.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Details

Status published
Products (1)
schneider-electric/modicon_quantum_firmware
Published May 22, 2019
Tracked Since Feb 18, 2026