CVE Database
/

CVE-2018-7240

Back to search

CVE-2018-7240

Published: Apr 18, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

A vulnerability exists in Schneider Electric's Modicon Quantum in all versions of the communication modules which could allow arbitrary code execution. An FTP command used to upgrade the firmware of the module can be misused to cause a denial of service, or in extreme cases, to load a malicious firmware.

VendorProductVersions

Schneider Electric SE

Modicon Quantum

affected
All versions of Modicon Quantum communication modules

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now