Unrated severityNVD Advisory· Published Apr 19, 2023· Updated Feb 5, 2025
CVE-2023-25620
CVE-2023-25620
Description
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause denial of service of the controller when a malicious project file is loaded onto the controller by an authenticated user.
Affected products
7- Schneider Electric/Legacy Modicon Premium CPUs (TSXP57*)v5Range: All
- Schneider Electric/Legacy Modicon Quantum (140CPU65*)v5Range: All
- Schneider Electric/Modicon M340 CPU (part numbers BMXP34*)v5Range: prior to SV3.51
- Schneider Electric/Modicon M580 CPU (part numbers BMEP* and BMEH*)v5Range: prior to V4.10
- Schneider Electric/Modicon M580 CPU Safety (part numbers BMEP58*S and BMEH58*S)v5Range: All
- Range: All
- Schneider Electric/Modicon Momentum Unity M1E Processor (171CBU*)v5Range: All
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.