10
CVSSv2

CVE-2011-4861

Published: 17/12/2011 Updated: 21/12/2011
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The modbus_125_handler function in the Schneider Electric Quantum Ethernet Module on the NOE 771 device (aka the Quantum 140NOE771* module) allows remote malicious users to install arbitrary firmware updates via a MODBUS 125 function code to TCP port 502.

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric quantum ethernet module 140noe77101

schneider-electric quantum ethernet module 140noe77111

schneider-electric quantum ethernet module 140noe77100