Security Advisory

CVE-2020-7559

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-19 21:04:25
Last updated 2024-08-04 09:33:19
Assigner schneider
State PUBLISHED

Description

A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software when receiving a specially crafted request over Modbus.