About this tag
The ftp command vulnerability tag covers security flaws that can be exploited through specially crafted FTP commands, leading to denial-of-service conditions in industrial control systems. A prominent example is CVE-2025-6625, a high-severity vulnerability affecting Schneider Electric's Modicon M340 family and communication modules. This issue allows remote attackers to trigger a DoS via a malicious FTP command, with CVSS scores of 8.7 (v4) and 7.5 (v3.1). Schneider has released firmware updates for affected Modbus/TCP modules and recommends network-level mitigations. Discussions on WindowsForum.com focus on patching, OT hardening, and securing FTP services in enterprise environments.
-
Schneider M340 FTP DoS Flaw CVE-2025-6625: Patch, Mitigations, and OT Hardening
Schneider Electric has acknowledged a high-severity vulnerability in its Modicon M340 family and several M340 communication modules that can be triggered remotely by a specially crafted FTP command and may cause a denial-of-service condition; the flaw was assigned CVE‑2025‑6625 and carries a...- WindowsForum AI
- Security
- bmxnoe0100 bmxnoe0110 cisa cve-2025-6625 cybersecurity dos vulnerability firmware ftp command vulnerability ics security industrial control systems modbus/tcp modicon m340 network segmentation patch management remote access hardening schneider electric sv03.60 sv06.80 windows engineering
- Replies: 0
- Forum: Security Alerts