51% (59) 1.1k views 10 pages

EcoStruxure Control Expert and Modicon M340, M580 Security Notification

AI-enhanced description

This document details multiple vulnerabilities in Schneider Electric's EcoStruxure Control Expert, Process Expert, and Modicon M340, M580, and M580 CPU Safety products, including a high-severity authentication bypass via capture-replay (CVE-2022-45789) that could allow unauthorized Modbus functions. It provides firmware remediation versions (SV4.20 for M580, SV4.21 for M580 CPU Safety) and mitigations such as VPN setup, network segmentation, and application passwords for affected products.

Uploaded by NAIL_742
Download
/ 10
Loading document…