XML External Entity injection in Schneider Electric Web Designer for Modicon



Risk High
Patch available NO
Number of vulnerabilities 1
CVE-ID CVE-2024-12476
CWE-ID CWE-611
Exploitation vector Network
Public exploit N/A
Vulnerable software
Web Designer for BMXNOR0200H
Hardware solutions / Firmware

Web Designer for BMXNOE0110(H)
Hardware solutions / Firmware

Web Designer for BMENOC0311(C)
Hardware solutions / Firmware

Web Designer for BMENOC0321(C)
Hardware solutions / Firmware

Vendor Schneider Electric

Security Bulletin

This security bulletin contains one high risk vulnerability.

1) XML External Entity injection

EUVDB-ID: #VU103652

Risk: High

CVSSv4.0: [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]

CVE-ID: CVE-2024-12476

CWE-ID: CWE-611 - Improper Restriction of XML External Entity Reference ('XXE')

Exploit availability: No

Description

The vulnerability allows a remote attacker to gain access to sensitive information.

The vulnerability exists due to insufficient validation of user-supplied XML input. A remote attacker can use a specifically crafted XML file and view contents of arbitrary files on the system or initiate requests to external systems, leading to arbitrary code execution.

Mitigation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

Vulnerable software versions

Web Designer for BMXNOR0200H: All versions

Web Designer for BMXNOE0110(H): All versions

Web Designer for BMENOC0311(C): All versions

Web Designer for BMENOC0321(C): All versions

CPE2.3 External links

http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2025-014-04&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2025-014-04.pdf
http://www.cisa.gov/news-events/ics-advisories/icsa-25-035-05


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###