7.2
CVSSv2

CVE-2018-7522

Published: 04/05/2018 Updated: 09/10/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, when a system call is made, registers are stored to a fixed memory location. Modifying the data in this location could allow malicious users to gain supervisor-level access and control system states.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric triconex_tricon_mp_3008_firmware