https://www.cisa.gov/news-events/ics-advisories/icsa-20-016-01
Severity: High
ID: 500342
Version: 1.9
Type: remote
Family: Tenable.ot
Published: 2/7/2022
Updated: 9/4/2024
Supported Sensors: Tenable OT Security
Risk Factor: Low
Score: 3.6
Risk Factor: Medium
Base Score: 5
Temporal Score: 3.7
Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P
CVSS Score Source: CVE-2018-7794
Risk Factor: High
Base Score: 7.5
Temporal Score: 6.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: cpe:/o:schneider-electric:tsxp57554m_firmware, cpe:/o:schneider-electric:140cpu65150_firmware, cpe:/o:schneider-electric:tsxh5724m_firmware, cpe:/o:schneider-electric:tsxp572634m_firmware, cpe:/o:schneider-electric:tsxp571634m_firmware, cpe:/o:schneider-electric:tsxp57454m_firmware, cpe:/o:schneider-electric:140cpu65260_firmware, cpe:/o:schneider-electric:140cpu67160s_firmware, cpe:/o:schneider-electric:tsxh5744m_firmware, cpe:/o:schneider-electric:tsxp57204m_firmware, cpe:/o:schneider-electric:140cpu67261_firmware:3, cpe:/o:schneider-electric:140cpu67260_firmware, cpe:/o:schneider-electric:140cpu65160_firmware, cpe:/o:schneider-electric:tsxp57154m_firmware, cpe:/o:schneider-electric:tsxp57304m_firmware, cpe:/o:schneider-electric:tsxp575634m_firmware, cpe:/o:schneider-electric:tsxp573634m_firmware, cpe:/o:schneider-electric:tsxp57354m_firmware, cpe:/o:schneider-electric:140cpu67861_firmware, cpe:/o:schneider-electric:140cpu65860_firmware, cpe:/o:schneider-electric:140cpu65160s_firmware, cpe:/o:schneider-electric:tsxp57104m_firmware, cpe:/o:schneider-electric:tsxp57254m_firmware, cpe:/o:schneider-electric:modicon_m340_series_firmware, cpe:/o:schneider-electric:tsxp574634m_firmware, cpe:/o:schneider-electric:modicon_m580_series_firmware, cpe:/o:schneider-electric:tsxp576634m_firmware, cpe:/o:schneider-electric:140cpu67060_firmware, cpe:/o:schneider-electric:140cpu67160_firmware
Required KB Items: Tenable.ot/Schneider
Exploit Ease: No known exploits are available
Patch Publication Date: 1/6/2020
Vulnerability Publication Date: 1/6/2020
CVE: CVE-2018-7794
CWE: 754
ICSA: 20-016-01