CVE-2022-34764
 
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause denial of service when parsing the URL. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)
Una CWE-119: Se presenta una vulnerabilidad de Restricción Inapropiada de Operaciones dentro de los Límites de un Búfer de Memoria que podría causar una denegación de servicio cuando es analizada la URL. Productos afectados: X80 advanced RTU Communication Module (BMENOR2200H) (versión V1.0), OPC UA Modicon Communication Module (BMENUA0100) (versiones V1.10 y anteriores)
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-06-28 CVE Reserved
- 2022-07-13 CVE Published
- 2024-02-03 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Schneider-electric Search vendor "Schneider-electric" | Opc Ua Module For M580 Firmware Search vendor "Schneider-electric" for product "Opc Ua Module For M580 Firmware" | <= 1.10 Search vendor "Schneider-electric" for product "Opc Ua Module For M580 Firmware" and version " <= 1.10" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Opc Ua Module For M580 Search vendor "Schneider-electric" for product "Opc Ua Module For M580" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | X80 Advanced Rtu Module Firmware Search vendor "Schneider-electric" for product "X80 Advanced Rtu Module Firmware" | 1.0 Search vendor "Schneider-electric" for product "X80 Advanced Rtu Module Firmware" and version "1.0" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | X80 Advanced Rtu Module Search vendor "Schneider-electric" for product "X80 Advanced Rtu Module" | - | - |
Safe
|