CVE-2019-6848: Schneider Electric Modicon Bmenoc 0311 Firmware
High severity, CVSS 8.6. EPSS: 33% chance of exploitation in the next 30 days.
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 CPU (BMEx58*) and Modicon M580 communication module (BMENOC0311, BMENOC0321) (see notification for version info), which could cause a Denial of Service attack on the PLC when sending specific data on the REST API of the controller/communication module.
Affected products
- Schneider Electric Modicon Bmenoc 0311 Firmware: affected versions not specified
- Schneider Electric Modicon Bmenoc 0321 Firmware: affected versions not specified
- Schneider Electric Modicon m580 Firmware: affected versions not specified
Published 2019-10-29. Last modified 2026-06-17.