CVE Published: 30/11/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: schneider |
Vendor: Schneider Electric SE |
Product: Embedded Web Servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 Status : PUBLISHED
CVE-2018-7830 Description
Improper Neutralization of CRLF Sequences in HTTP Headers (\'HTTP Response Splitting\') vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 where a denial of service can occur for ~1 minute by sending a specially crafted HTTP request.