Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
Configuration 18 (hide)
AND |
|
Configuration 19 (hide)
AND |
|
Configuration 20 (hide)
AND |
|
Configuration 21 (hide)
AND |
|
Configuration 22 (hide)
AND |
|
Configuration 23 (hide)
AND |
|
Configuration 24 (hide)
AND |
|
Configuration 25 (hide)
AND |
|
Configuration 26 (hide)
AND |
|
Configuration 27 (hide)
AND |
|
Configuration 28 (hide)
AND |
|
Configuration 29 (hide)
AND |
|
Configuration 30 (hide)
AND |
|
Configuration 31 (hide)
AND |
|
Configuration 32 (hide)
AND |
|
Configuration 33 (hide)
AND |
|
Configuration 34 (hide)
AND |
|
Configuration 35 (hide)
AND |
|
Configuration 36 (hide)
AND |
|
09 Aug 2023, 14:15
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-010-06&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-010-06_Modicon_Controllers_Security_Notification.pdf - Patch, Vendor Advisory | |
CPE | cpe:2.3:o:schneider-electric:modicon_m340_bmxp342030h_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp342020h:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep583020_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh582040:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep584040s:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep582040_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep586040:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh586040_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep586040c:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp342030h:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep584020:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep585040c_firmware:*:*:*:*:*:*:*:* cpe:2.3:a:schneider-electric:ecostruxure_process_expert:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep581020h_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep585040:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh586040c:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp342010:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep582040s:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep585040c:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp342020_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp3420302:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp3420102:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep586040c_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh584040:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep586040_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep583020:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp341000:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep584020_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep581020_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh584040_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep582020h:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh582040c_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp341000_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep583040_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp342030_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep582020:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh582040s_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep582020h_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh584040c:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh586040:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp3420302_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep581020:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp3420302h:-:*:*:*:*:*:*:* cpe:2.3:a:schneider-electric:ecostruxure_control_expert:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh584040s_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp342010_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp342030:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep582040h_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep582040s_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep583040:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep582040:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep584040s_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp342020h_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp3420102_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh582040_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh584040c_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp342020:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m340_bmxp342000:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep582020_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh586040s_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh586040s:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep584040_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp342000_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmep585040_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m340_bmxp3420302h_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh582040s:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh582040c:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep581020h:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmeh584040s:-:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep584040:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:modicon_m580_bmeh586040c_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:modicon_m580_bmep582040h:-:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
Summary | A CWE-294: Authentication Bypass by Capture-replay vulnerability exists that could cause execution of unauthorized Modbus functions on the controller when hijacking an authenticated Modbus session. Affected Products: EcoStruxure Control Expert (All Versions), EcoStruxure Process Expert (All Versions), Modicon M340 CPU - part numbers BMXP34* (All Versions), Modicon M580 CPU - part numbers BMEP* and BMEH* (All Versions), Modicon M580 CPU Safety - part numbers BMEP58*S and BMEH58*S (All Versions) |
03 Feb 2023, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Published : 2023-01-31 06:15
Updated : 2024-02-04 23:14
NVD link : CVE-2022-45789
Mitre link : CVE-2022-45789
CVE.ORG link : CVE-2022-45789
JSON object : View
schneider-electric
- modicon_m580_bmep585040c_firmware
- modicon_m580_bmeh582040s_firmware
- modicon_m580_bmeh584040c
- modicon_m340_bmxp342000
- modicon_m580_bmep583020_firmware
- modicon_m580_bmep584040
- modicon_m580_bmep582020h
- modicon_m580_bmep582040s_firmware
- modicon_m580_bmep584040s_firmware
- modicon_m340_bmxp342030
- modicon_m340_bmxp3420302_firmware
- modicon_m580_bmeh584040_firmware
- modicon_m340_bmxp3420302h
- modicon_m580_bmep585040c
- modicon_m580_bmep584040_firmware
- modicon_m580_bmep585040_firmware
- modicon_m580_bmep582040h
- modicon_m580_bmeh586040_firmware
- modicon_m580_bmeh586040c
- modicon_m340_bmxp3420102
- modicon_m580_bmeh584040s_firmware
- modicon_m580_bmeh586040c_firmware
- modicon_m580_bmeh582040
- modicon_m340_bmxp342020h_firmware
- modicon_m340_bmxp3420302h_firmware
- modicon_m580_bmep582040h_firmware
- modicon_m340_bmxp342000_firmware
- modicon_m340_bmxp342020
- modicon_m340_bmxp342030h_firmware
- modicon_m340_bmxp341000
- modicon_m340_bmxp342020_firmware
- modicon_m580_bmep582040s
- modicon_m580_bmep586040
- modicon_m580_bmeh582040c
- modicon_m340_bmxp342020h
- modicon_m580_bmeh586040
- modicon_m580_bmep586040_firmware
- modicon_m580_bmeh586040s_firmware
- modicon_m580_bmeh582040_firmware
- modicon_m340_bmxp342010_firmware
- modicon_m580_bmep584020_firmware
- modicon_m580_bmeh584040c_firmware
- ecostruxure_control_expert
- modicon_m580_bmep586040c
- modicon_m340_bmxp342030_firmware
- modicon_m580_bmep586040c_firmware
- modicon_m580_bmep582040_firmware
- modicon_m580_bmeh586040s
- modicon_m340_bmxp3420102_firmware
- modicon_m340_bmxp341000_firmware
- modicon_m340_bmxp3420302
- modicon_m580_bmep583040
- modicon_m580_bmep585040
- modicon_m580_bmeh582040c_firmware
- modicon_m580_bmep581020_firmware
- modicon_m580_bmep582020
- modicon_m580_bmeh582040s
- modicon_m580_bmep582020_firmware
- modicon_m580_bmeh584040s
- modicon_m580_bmep581020
- modicon_m580_bmep583040_firmware
- modicon_m340_bmxp342010
- modicon_m580_bmep581020h
- modicon_m580_bmep584040s
- modicon_m580_bmep581020h_firmware
- modicon_m580_bmep583020
- modicon_m580_bmep584020
- modicon_m340_bmxp342030h
- ecostruxure_process_expert
- modicon_m580_bmep582040
- modicon_m580_bmep582020h_firmware
- modicon_m580_bmeh584040
Authentication Bypass by Capture-replay