// For flags

CVE-2019-6851

 

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the controller when using TFTP protocol.

CWE-538: Hay una vulnerabilidad de Exposición de Información de Archivos y Directorios en Modicon M580, Modicon M340, Modicon Premium, Modicon Quantum (todas las versiones de firmware), lo que podría causar una divulgación de información del controlador cuando se usa el protocolo TFTP.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-01-25 CVE Reserved
  • 2019-10-29 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
  • CWE-538: Insertion of Sensitive Information into Externally-Accessible File or Directory
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Schneider-electric
Search vendor "Schneider-electric"
Modicon M580 Firmware
Search vendor "Schneider-electric" for product "Modicon M580 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Modicon M580
Search vendor "Schneider-electric" for product "Modicon M580"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Modicon M340 Firmware
Search vendor "Schneider-electric" for product "Modicon M340 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Modicon M340
Search vendor "Schneider-electric" for product "Modicon M340"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc002m Firmware
Search vendor "Schneider-electric" for product "Tsxmcpc002m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc002m
Search vendor "Schneider-electric" for product "Tsxmcpc002m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc512k Firmware
Search vendor "Schneider-electric" for product "Tsxmcpc512k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc512k
Search vendor "Schneider-electric" for product "Tsxmcpc512k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp001m Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp001m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp001m
Search vendor "Schneider-electric" for product "Tsxmfpp001m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp002m Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp002m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp002m
Search vendor "Schneider-electric" for product "Tsxmfpp002m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp004m Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp004m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp004m
Search vendor "Schneider-electric" for product "Tsxmfpp004m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp512k Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp512k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp512k
Search vendor "Schneider-electric" for product "Tsxmfpp512k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc001m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc001m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc001m
Search vendor "Schneider-electric" for product "Tsxmrpc001m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc002m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc002m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc002m
Search vendor "Schneider-electric" for product "Tsxmrpc002m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc003m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc003m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc003m
Search vendor "Schneider-electric" for product "Tsxmrpc003m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc007m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc007m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc007m
Search vendor "Schneider-electric" for product "Tsxmrpc007m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc01m7 Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc01m7 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc01m7
Search vendor "Schneider-electric" for product "Tsxmrpc01m7"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc768k Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc768k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc768k
Search vendor "Schneider-electric" for product "Tsxmrpc768k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf004m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpf004m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf004m
Search vendor "Schneider-electric" for product "Tsxmrpf004m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf008m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpf008m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf008m
Search vendor "Schneider-electric" for product "Tsxmrpf008m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc002m Firmware
Search vendor "Schneider-electric" for product "Tsxmcpc002m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc002m
Search vendor "Schneider-electric" for product "Tsxmcpc002m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc512k Firmware
Search vendor "Schneider-electric" for product "Tsxmcpc512k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmcpc512k
Search vendor "Schneider-electric" for product "Tsxmcpc512k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfp0128p2 Firmware
Search vendor "Schneider-electric" for product "Tsxmfp0128p2 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfp0128p2
Search vendor "Schneider-electric" for product "Tsxmfp0128p2"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfp064p2 Firmware
Search vendor "Schneider-electric" for product "Tsxmfp064p2 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfp064p2
Search vendor "Schneider-electric" for product "Tsxmfp064p2"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp001m Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp001m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp001m
Search vendor "Schneider-electric" for product "Tsxmfpp001m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp002m Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp002m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp002m
Search vendor "Schneider-electric" for product "Tsxmfpp002m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp004m Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp004m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp004m
Search vendor "Schneider-electric" for product "Tsxmfpp004m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp224k Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp224k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp224k
Search vendor "Schneider-electric" for product "Tsxmfpp224k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp384k Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp384k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp384k
Search vendor "Schneider-electric" for product "Tsxmfpp384k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp512k Firmware
Search vendor "Schneider-electric" for product "Tsxmfpp512k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmfpp512k
Search vendor "Schneider-electric" for product "Tsxmfpp512k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc001m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc001m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc001m
Search vendor "Schneider-electric" for product "Tsxmrpc001m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc002m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc002m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc002m
Search vendor "Schneider-electric" for product "Tsxmrpc002m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc003m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc003m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc003m
Search vendor "Schneider-electric" for product "Tsxmrpc003m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc007m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc007m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc007m
Search vendor "Schneider-electric" for product "Tsxmrpc007m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc01m7 Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc01m7 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc01m7
Search vendor "Schneider-electric" for product "Tsxmrpc01m7"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc448k Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc448k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc448k
Search vendor "Schneider-electric" for product "Tsxmrpc448k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc768k Firmware
Search vendor "Schneider-electric" for product "Tsxmrpc768k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpc768k
Search vendor "Schneider-electric" for product "Tsxmrpc768k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf004m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpf004m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf004m
Search vendor "Schneider-electric" for product "Tsxmrpf004m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf008m Firmware
Search vendor "Schneider-electric" for product "Tsxmrpf008m Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpf008m
Search vendor "Schneider-electric" for product "Tsxmrpf008m"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpp224k Firmware
Search vendor "Schneider-electric" for product "Tsxmrpp224k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpp224k
Search vendor "Schneider-electric" for product "Tsxmrpp224k"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpp384k Firmware
Search vendor "Schneider-electric" for product "Tsxmrpp384k Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Tsxmrpp384k
Search vendor "Schneider-electric" for product "Tsxmrpp384k"
--
Safe