EcoStruxure Control Expert, Process Expert, and Modicon PLC Security Notification
This document notifies users of multiple high-severity vulnerabilities (CVE-2023-27975, CVE-2023-6408, CVE-2023-6409) affecting EcoStruxure Control Expert, EcoStruxure Process Expert, and Modicon M340, M580, and M580 Safety PLCs, which could lead to denial of service, unauthorized access, and loss of confidentiality or integrity. It provides affected product versions, remediation steps including firmware updates (e.g., SV3.60, SV4.20, SV4.21) and software patches (e.g., Control Expert v16.0, Process Expert v2023), and details on man-in-the-middle attacks, hard-coded credentials, and insufficiently protected credentials.
Failed to load PDF
Download insteadYou might also like
TAC Xenta 527-NPR Security Router Manual
2 pages
SEP6697D SEP6 PDU Metered-by-Outlet with Switching Specifications
2 pages
Industrial Electrical Network Disturbance Types Reference
138 pages
MicroProx Tag Proximity Transponder Datasheet
2 pages
Vx-7000/9000 and Mx4x-6xxx/7xxx Linked Globe Valve Assemblies Selection Guide
39 pages
STX122 Water Temperature Sensor Specifications
2 pages
SpaceLogic IP-IO Module Introduction
14 pages
Cahier Technique: LV and HV Network Calculations
40 pages
OCPP Connectivity Guide for Schneider Electric EV Charging
22 pages
AP9635/41/43/44 Network Management Card Modbus Installation and Troubleshooting Guide
20 pages