5.2
CVSSv2

CVE-2020-28220

Published: 11/12/2020 Updated: 03/02/2022
CVSS v2 Base Score: 5.2 | Impact Score: 6.4 | Exploitability Score: 5.1
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 463
Vector: AV:A/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Modicon M258 Firmware (All versions prior to V5.0.4.11) and SoMachine/SoMachine Motion software (All versions), that could cause a buffer overflow when the length of a file transferred to the webserver is not verified.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric modicon_m258_firmware

schneider-electric somachine

schneider-electric somachine motion