CVE-2020-7559

Publication date

2020-11-19 21:04:25

Family

schneider

State

PUBLISHED

Description

A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software when receiving a specially crafted request over Modbus.