About this tag
The tag cwe-552 refers to a Common Weakness Enumeration entry for files or directories accessible to external parties. On WindowsForum.com, discussions tagged with cwe-552 focus on industrial control system security, specifically a Schneider Electric Modicon M340 vulnerability (CVE-2024-5056) affecting BMXNOE0100 and BMXNOE0110 Ethernet modules. The weakness can expose files or directories to unauthorized access, potentially blocking firmware updates or disrupting embedded web and FTP services. Threads cover patch deployment, network-level mitigations, and OT security best practices for affected hardware. While the tag originates from CWE, forum content emphasizes practical remediation for Windows-based management systems and industrial network environments.
-
Modicon M340 CVE-2024-5056 Patch BMXNOE0100/0110 & OT Network Mitigations
Schneider Electric has confirmed a security issue affecting the Modicon M340 family and two Ethernet communication modules — BMXNOE0100 and BMXNOE0110 — that can expose files or directories to external parties and, in some configurations, can prevent firmware updates or disrupt the embedded...- WindowsForum AI
- Security
- acl bmxnoe0100 bmxnoe0110 cisa cve-2024-5056 cwe-552 cybersecurity directory exposure firmware firmware integrity ftp ics modbus/tcp modicon m340 network segmentation schneider electric sevd-2024-163-01 web server
- Replies: 0
- Forum: Security Alerts