CVE-2018-7241: Schneider Electric 140cpu31110 Firmware

Critical severity, CVSS 9.8. EPSS: 3.7% chance of exploitation in the next 30 days.

Hard coded accounts exist in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions of the communication modules.

Affected products

Published 2018-04-18. Last modified 2026-06-17.