An Improper Check for Unusual or Exceptional Conditions vulnerability exists in Schneider Electric's Modicon M221 product (all references, all versions prior to firmware V1.6.2.0). The vulnerability allows unauthorized users to remotely reboot Modicon M221 using crafted programing protocol frames.
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.
Link | Tags |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-18-240-02 | us government resource third party advisory mitigation |
https://www.schneider-electric.com/en/download/document/SEVD-2018-233-01/ | mitigation vendor advisory |
http://www.securityfocus.com/bid/105171 | vdb entry third party advisory |