Vulnerability Description
**VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability could cause TCM modules to reset when under high network load in TCM v10.4.x and in system v10.3.x. This vulnerability was discovered and remediated in version v10.5.x on August 13, 2009. TCMs from v10.5.x and on will no longer exhibit this behavior.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schneider-Electric | Tricon Tcm 4351 Firmware | 10.3.x |
| Schneider-Electric | Tricon Tcm 4351 | - |
| Schneider-Electric | Tricon Tcm 4352 Firmware | 10.3.x |
| Schneider-Electric | Tricon Tcm 4352 | - |
| Schneider-Electric | Tricon Tcm 4351A Firmware | 10.3.x |
| Schneider-Electric | Tricon Tcm 4351A | - |
| Schneider-Electric | Tricon Tcm 4351B Firmware | 10.3.x |
| Schneider-Electric | Tricon Tcm 4351B | - |
| Schneider-Electric | Tricon Tcm 4352A Firmware | 10.3.x |
| Schneider-Electric | Tricon Tcm 4352A | - |
| Schneider-Electric | Tricon Tcm 4352B Firmware | 10.3.x |
| Schneider-Electric | Tricon Tcm 4352B | - |
Related Weaknesses (CWE)
References
- https://us-cert.cisa.gov/ics/advisories/icsa-20-205-01Third Party AdvisoryUS Government Resource
- https://www.se.com/ww/en/download/document/SESB-2020-105-01Vendor Advisory
- https://us-cert.cisa.gov/ics/advisories/icsa-20-205-01Third Party AdvisoryUS Government Resource
- https://www.se.com/ww/en/download/document/SESB-2020-105-01Vendor Advisory
FAQ
What is CVE-2020-7486?
CVE-2020-7486 is a vulnerability with a CVSS score of 7.5 (HIGH). **VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability could cause TCM modules to reset when under high network load in TCM v10.4.x and in system v10.3.x. This vulnerability was discovered and remedi...
How severe is CVE-2020-7486?
CVE-2020-7486 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-7486?
Check the references section above for vendor advisories and patch information. Affected products include: Schneider-Electric Tricon Tcm 4351 Firmware, Schneider-Electric Tricon Tcm 4351, Schneider-Electric Tricon Tcm 4352 Firmware, Schneider-Electric Tricon Tcm 4352, Schneider-Electric Tricon Tcm 4351A Firmware.