CVE-2018-7789
Description
An Improper Check for Unusual or Exceptional Conditions vulnerability exists in Schneider Electric's Modicon M221 product (all references, all versions prior to firmware V1.6.2.0). The vulnerability allows unauthorized users to remotely reboot Modicon M221 using crafted programing protocol frames.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
An improper check vulnerability in Schneider Electric Modicon M221 PLCs allows unauthorized remote reboot via crafted programming protocol frames.
Vulnerability
The vulnerability is an Improper Check for Unusual or Exceptional Conditions (CWE-754) in Schneider Electric's Modicon M221 programmable logic controller (PLC). All references and versions prior to firmware V1.6.2.0 are affected. The bug resides in the handling of programming protocol frames, where the device fails to properly validate certain conditions, allowing an attacker to trigger a reboot [1].
Exploitation
An attacker can exploit this vulnerability remotely by sending specially crafted programming protocol frames to the Modicon M221 device. No authentication is required, but the attack requires high complexity due to the need to craft specific frames. The attacker must have network access to the PLC, and no user interaction is needed [1].
Impact
Successful exploitation allows an unauthorized user to remotely reboot the Modicon M221 PLC. This results in a denial of service (availability impact) and potentially a low integrity impact as the device state may be disrupted. The confidentiality is not affected. The CVSS v3 base score is 4.8 (AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L) [1].
Mitigation
Schneider Electric has released a fix in firmware version V1.6.2.0, delivered via SoMachine Basic v1.6 SP2 or the Schneider Electric Software Update tool. Users should update to the latest firmware. As a workaround, minimize network exposure of the PLCs, place them behind firewalls, and isolate control system networks from business networks. The advisory is available at the Schneider Electric security notification [1].
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Range: <1.6.2.0
- Schneider Electric SE/Modicon M221, all references, all versions prior to firmware V1.6.2.0v5Range: Modicon M221, all references, all versions prior to firmware V1.6.2.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/105171mitrevdb-entryx_refsource_BID
- ics-cert.us-cert.gov/advisories/ICSA-18-240-02mitrex_refsource_MISC
- www.schneider-electric.com/en/download/document/SEVD-2018-233-01/mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.