Security Advisory
CVE-2018-8872
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, system calls read directly from memory addresses within the control program area without any verification. Manipulating this data could allow attacker data to be copied anywhere within memory.