Your review has been sent successfully

Schneider Electric Alert

2833
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

12 April, 2022

● Critical

2022-4652

All

Description:

Schneider Electric has released security alerts to address several vulnerabilities in the following products:

  • IGSS Data Server (IGSSdataServer.exe)
    • V15.0.0.22073 and prior
  • Modicon M340 CPUs
    • BMXP34* versions prior to V3.40
  • Modicon M340 X80 Ethernet Communication modules : BMXNOE0100 (H) BMXNOE0110 (H) BMXNOR0200H RTU
    • All versions

Threats:

Attacker could exploit these vulnerabilities by doing the following:

  • Denial of service attack (DoS)

Best practice and Recommendations:

The CERT team encourages users to review Schneider Electric security advisory and apply the necessary updates:

Last updated at 12 April, 2022

Rate the content

rate-icon
up icon