CVE-2021-22792
Last modified
CVE-2021-22792 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. A CWE-476: NULL Pointer Dereference vulnerability that could cause a Denial of Service on the Modicon PLC controller / simulator when updating the controller application with a specially crafted project file exists in Modicon M580 CPU (part numbers BMEP* and BMEH*, all versions), Modicon M340 CPU (part numbers BMXP34*, all versions), Modicon MC80 (part numbers BMKC80*, all versions), Modicon Momentum Ethernet CPU (part numbers 171CBU*, all versions), PLC Simulator for EcoStruxureª Control Expert, including all Unity Pro versions (former name of EcoStruxureª Control Expert, all versions), PLC Simulator for EcoStruxureª Process Expert including all HDCS versions (former name of EcoStruxureª Process Expert, all versions), Modicon Quantum CPU (part numbers 140CPU*, all versions), Modicon Premium CPU (part numbers TSXP5*, all versions).. EPSS estimates a 0.90% chance of exploitation in the next 30 days.
Description
A CWE-476: NULL Pointer Dereference vulnerability that could cause a Denial of Service on the Modicon PLC controller / simulator when updating the controller application with a specially crafted project file exists in Modicon M580 CPU (part numbers BMEP* and BMEH*, all versions), Modicon M340 CPU (part numbers BMXP34*, all versions), Modicon MC80 (part numbers BMKC80*, all versions), Modicon Momentum Ethernet CPU (part numbers 171CBU*, all versions), PLC Simulator for EcoStruxureª Control Expert, including all Unity Pro versions (former name of EcoStruxureª Control Expert, all versions), PLC Simulator for EcoStruxureª Process Expert including all HDCS versions (former name of EcoStruxureª Process Expert, all versions), Modicon Quantum CPU (part numbers 140CPU*, all versions), Modicon Premium CPU (part numbers TSXP5*, all versions).
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Schneider-Electric | Modicon M340 Bmxp341000 | All versions |
| Schneider-Electric | Modicon M340 Bmxp342010 | All versions |
| Schneider-Electric | Modicon M340 Bmxp342020 | All versions |
| Schneider-Electric | Modicon M340 Bmxp342030 | All versions |
| Schneider-Electric | Modicon M580 Bmeh582040 | All versions |
| Schneider-Electric | Modicon M580 Bmeh582040c | All versions |
| Schneider-Electric | Modicon M580 Bmeh582040s | All versions |
| Schneider-Electric | Modicon M580 Bmeh584040 | All versions |
| Schneider-Electric | Modicon M580 Bmeh584040c | All versions |
| Schneider-Electric | Modicon M580 Bmeh584040s | All versions |
| Schneider-Electric | Modicon M580 Bmeh586040 | All versions |
| Schneider-Electric | Modicon M580 Bmeh586040c | All versions |
| Schneider-Electric | Modicon M580 Bmeh586040s | All versions |
| Schneider-Electric | Modicon M580 Bmep581020 | All versions |
| Schneider-Electric | Modicon M580 Bmep581020h | All versions |
| Schneider-Electric | Modicon M580 Bmep582020 | All versions |
| Schneider-Electric | Modicon M580 Bmep582020h | All versions |
| Schneider-Electric | Modicon M580 Bmep582040 | All versions |
| Schneider-Electric | Modicon M580 Bmep582040h | All versions |
| Schneider-Electric | Modicon M580 Bmep582040s | All versions |
| Schneider-Electric | Modicon M580 Bmep583020 | All versions |
| Schneider-Electric | Modicon M580 Bmep583040 | All versions |
| Schneider-Electric | Modicon M580 Bmep584020 | All versions |
| Schneider-Electric | Modicon M580 Bmep584040 | All versions |
| Schneider-Electric | Modicon M580 Bmep584040s | All versions |
| Schneider-Electric | Modicon M580 Bmep585040 | All versions |
| Schneider-Electric | Modicon M580 Bmep585040c | All versions |
| Schneider-Electric | Modicon M580 Bmep586040 | All versions |
| Schneider-Electric | Modicon M580 Bmep586040c | All versions |
| Schneider-Electric | Modicon Mc80 Bmkc8020301 | All versions |
| Schneider-Electric | Modicon Mc80 Bmkc8020310 | All versions |
| Schneider-Electric | Modicon Mc80 Bmkc8030311 | All versions |
| Schneider-Electric | Modicon Momentum 171cbu78090 | All versions |
| Schneider-Electric | Modicon Momentum 171cbu98090 | All versions |
| Schneider-Electric | Modicon Momentum 171cbu98091 | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 1634m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 2634m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 2834m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 454m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 4634m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 554m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 5634m | All versions |
| Schneider-Electric | Modicon Premium Tsxp57 6634m | All versions |
| Schneider-Electric | Modicon Quantum 140cpu65150 | All versions |
| Schneider-Electric | Modicon Quantum 140cpu65150c | All versions |
| Schneider-Electric | Modicon Quantum 140cpu65160 | All versions |
| Schneider-Electric | Modicon Quantum 140cpu65160c | All versions |
| Schneider-Electric | Plc Simulator For Ecostruxure Control Expert | All versions |
| Schneider-Electric | Plc Simulator For Ecostruxure Process Expert | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-22792?
How severe is CVE-2021-22792?
How do I fix CVE-2021-22792?
Are you affected by CVE-2021-22792?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
