CVE-2020-7564

HIGHCVSS 8.8/10EPSS 1.09%

Last modified

CVE-2020-7564 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP.. EPSS estimates a 1.09% chance of exploitation in the next 30 days.

Description

A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP.

Metrics

CVSS 3.1
8.8/10

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
1.09%

61.1th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Schneider-ElectricModicon Tsxety4103 FirmwareAll versions
Schneider-ElectricModicon Tsxety5103 FirmwareAll versions
Schneider-ElectricModicon Tsxp574634 FirmwareAll versions
Schneider-ElectricModicon Tsxp575634 FirmwareAll versions
Schneider-ElectricModicon Tsxp576634 FirmwareAll versions
Schneider-ElectricModicon Quantum 140noe77101 FirmwareAll versions
Schneider-ElectricModicon Quantum 140noe77111 FirmwareAll versions
Schneider-ElectricModicon Quantum 140noc78100 FirmwareAll versions
Schneider-ElectricModicon Quantum 140cpu65150 FirmwareAll versions
Schneider-ElectricModicon Quantum 140cpu65150c FirmwareAll versions
Schneider-ElectricModicon Quantum 140cpu65160c FirmwareAll versions
Schneider-ElectricModicon Quantum 140cpu65160 FirmwareAll versions
Schneider-ElectricModicon M340 Bmx P34-2010 FirmwareAll versions
Schneider-ElectricModicon M340 Bmx P34-2030 FirmwareAll versions
Schneider-ElectricModicon M340 Bmx Noc 0401 FirmwareAll versions
Schneider-ElectricModicon M340 Bmx Noe 0100 FirmwareAll versions
Schneider-ElectricModicon M340 Bmx Noe 0100h FirmwareAll versions
Schneider-ElectricModicon M340 Bmx Noe 0110 FirmwareAll versions
Schneider-ElectricModicon M340 Bmx Noe 0110h FirmwareAll versions
Schneider-ElectricModicon M340 Bmx Nor 0200h FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-7564?
A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP.
How severe is CVE-2020-7564?
CVE-2020-7564 has a CVSS score of 8.8/10 (HIGH severity). The EPSS model estimates a 1.09% probability of exploitation in the next 30 days.
How do I fix CVE-2020-7564?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-7564?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST