Schneider Electric Modicon Controllers M241/ M251, M258 and M262 Improper Neutralization of Input During Web Page Generation (CVE-2024-6528)

medium Tenable OT Security Plugin ID 502321

Version 1.4

Dec 20, 2024, 12:27 PM

  • Plugin metadata (detection updated)

Plugin Feed: 202412201227

Version 1.3

Dec 19, 2024, 6:04 PM

  • New

Plugin Feed: 202412191804

Version 1.2

Jul 24, 2024, 6:31 PM

  • CVSS metrics ("CVSSv2 score" set to 6.4)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:N")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:U/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:U/RL:O/RC:C")
  • CVSSv2 severity (based on CVE-2024-6528, severity decreased from "High" to "Medium")
  • Exploit attributes ("Exploit available" set to "False")

Plugin Feed: 202407241831

Version 1.1

Jul 23, 2024, 11:58 AM

  • New

Plugin Feed: 202407231158

* Changelogs are generally available for changes made after Nov 1, 2022