CVE-2018-7842
15Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 35%
exploitation probability
35%top 2% of all CVEs
observed exploitation
nono source reports it
A CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium which could cause an elevation of privilege by conducting a brute force attack on Modbus parameters sent to the controller.
Affected products
n/a · Modicon M580 Modicon M340 Modicon Quantum Modicon Premium