CVE-2017-6034
9.8
CRITICAL · CVSS 3.1 · EPSS 5.2% (pctl 92)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
An authentication bypass by capture-replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker to replay the following commands: run, stop, upload, and download.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 5.18% — more likely to be exploited than 92% of all CVEs |
| Weakness | CWE-294 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2017-06-30 |
| Last modified | 2026-06-17 |
Affected (2)
| Vendor | Product |
|---|---|
| schneider-electric | modbus |
| schneider-electric | modbus firmware |
References
- http://www.securityfocus.com/bid/97562
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2017/icsa-17-101-01.json
- https://ics-cert.us-cert.gov/advisories/ICSA-17-101-01
- https://www.se.com/us/en/download/document/SEVD-2017-065-01/
- http://www.securityfocus.com/bid/97562
- https://ics-cert.us-cert.gov/advisories/ICSA-17-101-01
→ the Explorer · watch your stack · NVD