← Vulnerability feed

Vulnerability record · CVE-2022-37301 · published 22 November 2022

CVE-2022-37301: Schneider-electric modicon m340 bmx p34-2010 firmware vulnerability

Schneider Electric · Modicon M340 Bmx P34 2010 Firmware

A CWE-191: Integer Underflow (Wrap or Wraparound) vulnerability exists that could cause a denial of service of the controller due to memory access violations when using the Modbus TCP protocol. Affected products: Modicon M340 CPU (part numbers BMXP34*)(V3.40 and prior), Modicon M580 CPU (part numbers BMEP* and BMEH*)(V3.22 and prior), Legacy Modicon Quantum/Premium(All Versions), Modicon Momentum MDI (171CBU*)(All Versions), Modicon MC80 (BMKC80)(V1.7 and prior)

7.5 CVSS 3.1 High EPSS 0.75% · top 46.4% CWE-191 · CWE-191
7.5CVSS 3.1 base score
0.75%EPSS exploitation probability, 30 days
NoNot in CISA KEV
48Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A CWE-191: Integer Underflow (Wrap or Wraparound) vulnerability exists that could cause a denial of service of the controller due to memory access violations when using the Modbus TCP protocol. Affected products: Modicon M340 CPU (part numbers BMXP34*)(V3.40 and prior), Modicon M580 CPU (part numbers BMEP* and BMEH*)(V3.22 and prior), Legacy Modicon Quantum/Premium(All Versions), Modicon Momentum MDI (171CBU*)(All Versions), Modicon MC80 (BMKC80)(V1.7 and prior)

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

48 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2022-37301 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2022-45789Schneider-electric ecostruxure control expert authentication bypass by capture-replay vulnerabilityA CWE-294: Authentication Bypass by Capture-replay vulnerability exists that could cause execution of unauthorized Modbus functions on the controller…EPSS 1.5%9.8CVE-2022-45788Schneider-electric ecostruxure control expert vulnerabilityA CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause arbitrary code execution, denial of service and…EPSS 1.2%9.8CVE-2022-37300Schneider-electric ecostruxure control expert weak password recovery vulnerabilityA CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists that could cause unauthorized access in read and write mode t…EPSS 0.77%9.1CVE-2021-22779Schneider-electric ecostruxure control expert authentication bypass by spoofing vulnerabilityAuthentication Bypass by Spoofing vulnerability exists in EcoStruxure Control Expert (all versions prior to V15.0 SP1, including all versions of Unit…EPSS 1.0%8.8CVE-2020-7564Schneider-electric modicon tsxety4103 firmware classic buffer overflow vulnerabilityA CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Qua…EPSS 1.1%8.8CVE-2020-7563Schneider-electric modicon tsxety4103 firmware out-of-bounds write vulnerabilityA CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Co…EPSS 1.1%8.1CVE-2023-6408Schneider-electric modicon m340 bmxp341000 firmware vulnerabilityCWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of s…EPSS 0.32%8.1CVE-2020-7562Schneider-electric modicon tsxety4103 firmware out-of-bounds read vulnerabilityA CWE-125: Out-of-Bounds Read vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Com…EPSS 0.90%

Source: NIST National Vulnerability Database (record CVE-2022-37301), CISA KEV, FIRST EPSS (scores of 2026-10-06). This page is refreshed as NVD updates the record.