445
VMScore

CVE-2019-6851

Published: 29/10/2019 Updated: 03/02/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the controller when using TFTP protocol.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric modicon_m580_firmware

schneider-electric modicon_m340_firmware

schneider-electric tsxmcpc002m_firmware

schneider-electric tsxmcpc512k_firmware

schneider-electric tsxmfpp001m_firmware

schneider-electric tsxmfpp002m_firmware

schneider-electric tsxmfpp004m_firmware

schneider-electric tsxmfpp512k_firmware

schneider-electric tsxmrpc001m_firmware

schneider-electric tsxmrpc002m_firmware

schneider-electric tsxmrpc003m_firmware

schneider-electric tsxmrpc007m_firmware

schneider-electric tsxmrpc01m7_firmware

schneider-electric tsxmrpc768k_firmware

schneider-electric tsxmrpf004m_firmware

schneider-electric tsxmrpf008m_firmware

schneider-electric tsxmfp0128p2_firmware

schneider-electric tsxmfp064p2_firmware

schneider-electric tsxmfpp224k_firmware

schneider-electric tsxmfpp384k_firmware

schneider-electric tsxmrpc448k_firmware

schneider-electric tsxmrpp224k_firmware

schneider-electric tsxmrpp384k_firmware