Schneider Electric Alert
2833Warning Date
Severity Level
Warning Number
Target Sector
12 April, 2022
● Critical
2022-4652
All
Description:
Schneider Electric has released security alerts to address several vulnerabilities in the following products:
- IGSS Data Server (IGSSdataServer.exe)
- V15.0.0.22073 and prior
- Modicon M340 CPUs
- BMXP34* versions prior to V3.40
- Modicon M340 X80 Ethernet Communication modules : BMXNOE0100 (H) BMXNOE0110 (H) BMXNOR0200H RTU
- All versions
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS)
Best practice and Recommendations:
The CERT team encourages users to review Schneider Electric security advisory and apply the necessary updates: