Modicon Vulnerabilities

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Type

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Product

Modicon M34010
Modicon Premium8
Modicon BMXNOR02008
Modicon Quantum PLC4
Modicon Quantum PLCs4

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Remediation

Official Fix2
Temporary Fix0
Workaround0
Unavailable0
Not Defined12

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploitability

High0
Functional0
Proof-of-Concept0
Unproven0
Not Defined14

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Access Vector

Not Defined0
Physical0
Local0
Adjacent0
Network14

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Authentication

Not Defined0
High2
Low0
None12

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

User Interaction

Not Defined0
Required2
None12

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

C3BM Index

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

CVSSv3 Base

≤10
≤20
≤30
≤42
≤50
≤64
≤74
≤80
≤94
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

CVSSv3 Temp

≤10
≤20
≤30
≤42
≤50
≤64
≤74
≤80
≤94
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

VulDB

≤10
≤20
≤32
≤42
≤52
≤64
≤70
≤84
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

NVD

≤10
≤20
≤30
≤40
≤52
≤60
≤72
≤86
≤90
≤104

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

CNA

≤10
≤20
≤30
≤40
≤50
≤60
≤70
≤80
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vendor

≤10
≤20
≤30
≤40
≤50
≤60
≤70
≤80
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Research

≤10
≤20
≤30
≤40
≤50
≤60
≤70
≤80
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploit 0-day

<1k6
<2k4
<5k4
<10k0
<25k0
<50k0
<100k0
≥100k0

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploit Today

<1k14
<2k0
<5k0
<10k0
<25k0
<50k0
<100k0
≥100k0

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploit Market Volume

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

🔴 CTI Activities

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Affected Products (15): BMXNOR0200 (8), Controller (1), EcoStruxure Control ExpertUnity Pro (1), Ethernet Module BMENOC0301 (1), M218 (2), M241 (2), M251 (2), M258 (2), M340 (9), M580 (1), M580 CPU BMEP582040 (1), Modicon M580 (1), Premium (8), Quantum PLC (3), Quantum PLCs (5)

PublishedBaseTempVulnerabilityProdExpRemEPSSCTICVE
04/22/20205.65.6Modicon M218/M241/M251/M258 cleartext transmissionSCADA SoftwareNot DefinedNot Defined0.001680.04CVE-2020-7488
04/22/20208.58.5Modicon M218/M241/M251/M258 data authenticitySCADA SoftwareNot DefinedNot Defined0.002220.00CVE-2020-7487
04/22/20207.47.4Modicon Controller Communication Module hard-coded credentialsSCADA SoftwareNot DefinedNot Defined0.001680.00CVE-2019-6859
03/23/20208.58.2Modicon /EcoStruxure Control ExpertUnity Pro/M340/M580 Downstream Component injectionSCADA SoftwareNot DefinedOfficial Fix0.002330.04CVE-2020-7475
10/29/20193.83.8Modicon Modicon M580 Application exceptional conditionSCADA SoftwareNot DefinedNot Defined0.000810.00CVE-2019-6847
07/15/20197.57.3Modicon M580 CPU BMEP582040/Ethernet Module BMENOC0301 FTP Service memory corruptionSCADA SoftwareNot DefinedOfficial Fix0.001030.00CVE-2018-7838
12/17/20186.46.4Modicon M340/Premium/Quantum PLC/BMXNOR0200 Embedded Web Server unusual conditionSCADA SoftwareNot DefinedNot Defined0.001100.00CVE-2018-7833
12/17/20186.46.4Modicon M340/Premium/Quantum PLC/BMXNOR0200 Embedded Web Server information disclosureSCADA SoftwareNot DefinedNot Defined0.001780.04CVE-2018-7812
12/17/20186.66.6Modicon M340/Premium/Quantum PLC/BMXNOR0200 Embedded Web Server redirectSCADA SoftwareNot DefinedNot Defined0.000780.02CVE-2018-7804
11/30/20186.56.5Modicon M340/Premium/Quantum PLCs/BMXNOR0200 Embedded Web Server cross-site request forgerySCADA SoftwareNot DefinedNot Defined0.000980.00CVE-2018-7831

4 more entries are not shown

Are you interested in using VulDB?

Download the whitepaper to learn more about our service!