Security Advisory

CVE-2018-8872

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-05-04 17:00:00
Last updated 2024-09-16 16:32:36
Assigner icscert
State PUBLISHED

Description

In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, system calls read directly from memory addresses within the control program area without any verification. Manipulating this data could allow attacker data to be copied anywhere within memory.