A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP.
History

Fri, 29 May 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2026-05-29T13:24:10.642Z

Reserved: 2020-01-21T00:00:00.000Z

Link: CVE-2020-7563

cve-icon Vulnrichment

Updated: 2024-08-04T09:33:19.765Z

cve-icon NVD

Status : Modified

Published: 2020-11-18T14:15:13.017

Modified: 2026-05-29T14:16:22.050

Link: CVE-2020-7563

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.