CyberSec.Space Logo
返回 CVE 浏览器

CVE-2015-7937

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1780%
EPSS Percentile27.68th
Published2015年12月21日
Last Modified2026年5月6日

Vulnerability Description

Stack-based buffer overflow in the GoAhead Web Server on Schneider Electric Modicon M340 PLC BMXNOx and BMXPx devices allows remote attackers to execute arbitrary code via a long password in HTTP Basic Authentication data.

Affected Platforms (CPE)

🔌
Schneider Electric

Bmxnoc0401

All versions
🔌
Schneider Electric

Bmxnoe0100

All versions
🔌
Schneider Electric

Bmxnoe0100h

All versions
🔌
Schneider Electric

Bmxnoe0110

All versions
🔌
Schneider Electric

Bmxnoe0110h

All versions
🔌
Schneider Electric

Bmxnor0200

All versions
🔌
Schneider Electric

Bmxnor0200h

All versions
🔌
Schneider Electric

Bmxpra0100

All versions
🔌
Schneider Electric

Modicon M340 Bmxp342020

All versions
🔌
Schneider Electric

Modicon M340 Bmxp342020h

All versions
🔌
Schneider Electric

Modicon M340 Bmxp342030

All versions
🔌
Schneider Electric

Modicon M340 Bmxp3420302

All versions
🔌
Schneider Electric

Modicon M340 Bmxp3420302h

All versions

References & Advisories

相关漏洞威胁