A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized command execution when a brute force attack is done over Modbus.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: schneider

Published: 2020-11-19T21:03:43

Updated: 2020-11-19T21:03:43

Reserved: 2020-11-05T00:00:00


Link: CVE-2020-28212

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-11-19T22:15:13.490

Modified: 2022-01-31T19:33:27.450


Link: CVE-2020-28212

JSON object: View

cve-icon Redhat Information

No data.

CWE