High severity7.5NVD Advisory· Published May 22, 2019· Updated Jun 17, 2026
CVE-2018-7845
CVE-2018-7845
Description
A CWE-125: Out-of-bounds Read vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause the disclosure of unexpected data from the controller when reading specific memory blocks in the controller over Modbus.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- cpe:2.3:o:schneider-electric:modicon_m340_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:schneider-electric:modicon_m580_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:modicon_premium_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:schneider-electric:modicon_premium_firmware:*:*:*:*:*:*:*:*
- (no CPE)
- cpe:2.3:o:schneider-electric:modicon_quantum_firmware:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- www.talosintelligence.com/vulnerability_reports/TALOS-2018-0745nvdExploitThird Party Advisory
- www.schneider-electric.com/en/download/document/SEVD-2019-134-11/nvdVendor Advisory
News mentions
0No linked articles in our index yet.