CVE Database
/

CVE-2018-7812

Back to search

CVE-2018-7812

Published: Dec 17, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

An Information Exposure through Discrepancy vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 where the web server sends different responses in a way that exposes security-relevant information about the state of the product, such as whether a particular operation was successful or not.

VendorProductVersions

Schneider Electric SE

Embedded Web Servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200

affected
Embedded Web Servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now