SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Schneider Electric Modicon M580 UMAS Information Disclosure 6

Category: SCADA-ATTACKS      

An exploitable information disclosure vulnerability exists in the UMAS REST API readbolarray functionality of the Schneider Electric Modicon M580 Programmable Automation Controller firmware version SV2.80. A specially crafted HTTP request can cause the device to return blocks of program memory, resulting in the disclosure of sensitive project information.


Relevant Information