EcoStruxure Control Expert and Modicon M340, M580 Security Notification
This document details multiple vulnerabilities in Schneider Electric's EcoStruxure Control Expert, Process Expert, and Modicon M340, M580, and M580 CPU Safety products, including a high-severity authentication bypass via capture-replay (CVE-2022-45789) that could allow unauthorized Modbus functions. It provides firmware remediation versions (SV4.20 for M580, SV4.21 for M580 CPU Safety) and mitigations such as VPN setup, network segmentation, and application passwords for affected products.
Failed to load PDF
Download insteadYou might also like
S-UNC-DI and S-UNC-AI Input Cards Installation Guide
6 pages
Infinity Controller OPC Server Manual
3 pages
SP-C-WEB Security Expert WEB System Controller Overview
4 pages
Cahier Technique 198: Vacuum Switching in Medium Voltage Switchgear
36 pages
EasyLogic RP-V-5C-M BACnet MS/TP VAV Field Controller Manual
13 pages
Access 8 AH Reader Specifications
1 pages
FlexNet Publisher Vulnerability Security Notification
6 pages
Connected Room Solution for Hotels Guide Specification
29 pages
Integration of Local Power Generation in Industrial Sites and Commercial Buildings Technical Study
28 pages
M9B Electromechanical Actuator Specification
2 pages