MEDIUM · 5.0

CVE-2013-2763

The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it ...

Vulnerability Description

The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it "could not be duplicated" and "an attacker could not remotely exploit this observed behavior to deny PLC control functions.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
Schneider-ElectricModicon M340 Bmx Noc 0401 Firmware-
Schneider-ElectricModicon M340 Bmx Noc 0401-
Schneider-ElectricModicon M340 Bmx Noe 0100 Firmware-
Schneider-ElectricModicon M340 Bmx Noe 0100-
Schneider-ElectricModicon M340 Bmx Noe 0100H Firmware-
Schneider-ElectricModicon M340 Bmx Noe 0100H-
Schneider-ElectricModicon M340 Bmx Noe 0110 Firmware-
Schneider-ElectricModicon M340 Bmx Noe 0110-
Schneider-ElectricModicon M340 Bmx Noe 0110H Firmware-
Schneider-ElectricModicon M340 Bmx Noe 0110H-
Schneider-ElectricModicon M340 Bmx Nor 0200H Firmware-
Schneider-ElectricModicon M340 Bmx Nor 0200H-
Schneider-ElectricModicon M340 Bmx P34-2010 Firmware-
Schneider-ElectricModicon M340 Bmx P34-2010-
Schneider-ElectricModicon M340 Bmx P34-2030 Firmware-
Schneider-ElectricModicon M340 Bmx P34-2030-
Schneider-ElectricModicon M340 Bmxp341000 Firmware-
Schneider-ElectricModicon M340 Bmxp341000-
Schneider-ElectricModicon M340 Bmxp342010 Firmware-
Schneider-ElectricModicon M340 Bmxp342010-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-2763?

CVE-2013-2763 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it ...

How severe is CVE-2013-2763?

CVE-2013-2763 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-2763?

Check the references section above for vendor advisories and patch information. Affected products include: Schneider-Electric Modicon M340 Bmx Noc 0401 Firmware, Schneider-Electric Modicon M340 Bmx Noc 0401, Schneider-Electric Modicon M340 Bmx Noe 0100 Firmware, Schneider-Electric Modicon M340 Bmx Noe 0100, Schneider-Electric Modicon M340 Bmx Noe 0100H Firmware.