Vulnerability Details CVE-2018-7522
In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, when a system call is made, registers are stored to a fixed memory location. Modifying the data in this location could allow attackers to gain supervisor-level access and control system states.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.0%
CVSS Severity
CVSS v3 Score 6.7
CVSS v2 Score 7.2
Products affected by CVE-2018-7522
-
cpe:2.3:h:schneider-electric:triconex_tricon_mp_3008:-
-
cpe:2.3:o:schneider-electric:triconex_tricon_mp_3008_firmware:10.0