VYPR
Unrated severityNVD Advisory· Published Aug 29, 2018· Updated Sep 16, 2024

CVE-2018-7789

CVE-2018-7789

Description

An Improper Check for Unusual or Exceptional Conditions vulnerability exists in Schneider Electric's Modicon M221 product (all references, all versions prior to firmware V1.6.2.0). The vulnerability allows unauthorized users to remotely reboot Modicon M221 using crafted programing protocol frames.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

An improper check vulnerability in Schneider Electric Modicon M221 PLCs allows unauthorized remote reboot via crafted programming protocol frames.

Vulnerability

The vulnerability is an Improper Check for Unusual or Exceptional Conditions (CWE-754) in Schneider Electric's Modicon M221 programmable logic controller (PLC). All references and versions prior to firmware V1.6.2.0 are affected. The bug resides in the handling of programming protocol frames, where the device fails to properly validate certain conditions, allowing an attacker to trigger a reboot [1].

Exploitation

An attacker can exploit this vulnerability remotely by sending specially crafted programming protocol frames to the Modicon M221 device. No authentication is required, but the attack requires high complexity due to the need to craft specific frames. The attacker must have network access to the PLC, and no user interaction is needed [1].

Impact

Successful exploitation allows an unauthorized user to remotely reboot the Modicon M221 PLC. This results in a denial of service (availability impact) and potentially a low integrity impact as the device state may be disrupted. The confidentiality is not affected. The CVSS v3 base score is 4.8 (AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L) [1].

Mitigation

Schneider Electric has released a fix in firmware version V1.6.2.0, delivered via SoMachine Basic v1.6 SP2 or the Schneider Electric Software Update tool. Users should update to the latest firmware. As a workaround, minimize network exposure of the PLCs, place them behind firewalls, and isolate control system networks from business networks. The advisory is available at the Schneider Electric security notification [1].

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • Range: <1.6.2.0
  • Schneider Electric SE/Modicon M221, all references, all versions prior to firmware V1.6.2.0v5
    Range: Modicon M221, all references, all versions prior to firmware V1.6.2.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.