There is a remote code execution vulnerability in Schneider industrial equipment

Create Date: 2024-8-30 12:03:23|Source: Schneider/Schneider

Recently, Armis security researchers have reported that Schneider Electric's programmable logic manipulators (PLCs) have serious and unpatched gaps in long-distance code fulfillment, allowing intruders to manipulate their various industrial systems.

                               There is a remote code execution vulnerability in Schneider industrial equipment

Schneider Electric's Modicon manipulator series is one of the first PLCs on the market to connect industrial equipment, from oil and gas pipelines to manufacturing systems and water purification facilities, into a single network. However, research has found that there is a serious gap in the product: the ability for anyone to use hidden commands to bypass authentication and control the device.

Armis researchers found that these instructions can be used to take over the PLC and take native code fulfillment on the device, which can be used to change the operation of the PLC, along with hiding the changes to the engineering workstation handling the PLC. This intrusion is an unauthenticated intrusion that only requires network access to the target PLC. Said the information security analyst.

The gap is called "ModiPwn" and Schneider Electric claims to have patched it. Armis researchers found that these patches only work if the application code is encrypted, and we have found a number of ways to circumvent the code, even on the latest software versions, which allow everyone to open the gap again.

To make matters worse, the crevices that began to be classified as causing denial-of-service (DoS) intrusions were found to allow long-distance code fulfillment – meaning that an unauthenticated intruder would be able to fully manipulate the PLC and, in turn, any industrial equipment it uses.

Schneider Electric confirmed the gaps and promised a patch by the end of the year. However, for Schneider Electric's customers, these devices need to be further verified to be safe, even if patches are installed.
More on that
Design and calculation method of inverter braking resistance - Schneider Design and calculation method of inverter braking resistance - Schneider

1. The number of braking resistor boxes is roughly calculated as: motor power (KW)/11.2 (take the upper limit of the integer). 2. The selection of the power of the braking unit is generally (1-2) times the power of the inverter; 3. The function of braking resistor ...

Instrumentation anti-interference measures - Schneider Instrumentation anti-interference measures - Schneider

The interference encountered by sensors and instruments in the field operation is varied, and the specific situation is analyzed on a case-by-case basis, and the principle of anti-interference is to adopt different methods for different disturbances. This flexible and mobile strategy is undoubtedly opposed to universality, and the way to deal with it is to choose a modular approach, except for ...

Schneider miniature circuit breaker code calling Schneider miniature circuit breaker code calling

Schneider miniature circuit breaker code marking method For example: 1-C65N-C20A/2P+VE+30mA+SD, the meaning of each item is: 1--------- identification number C65 ------ serial code N -------- breaking ability, N is 6000A, H is 10000A, L is 15kA ...

Switching power supply circuit fault phenomenon - Schneider Switching power supply circuit fault phenomenon - Schneider

1. The power supply voltage of the secondary load is 0V. There is no response after the inverter is powered on, there is no indication on the operation display panel, and the 24V and 10V voltages of the measurement and control terminals are 0V. Check that the charging resistance or pre-charging circuit of the main circuit is correct, which can be identified as a switching power supply fault. The overhaul process is as follows: 1 ...

The UPS boot panel does not show that the UPS is not working - Schneider The UPS boot panel does not show that the UPS is not working - Schneider

Problem: After the UPS is turned on, there is no display on the panel, and the UPS does not work Problem analysis: Judging from the problem phenomenon, the problem lies in the mains input, the battery and the mains detection part and the battery voltage detection loop: 1. Check ...

The operation essentials of Schneider disconnectors The operation essentials of Schneider disconnectors

Schneider Barrier Features: First of all, Schneider Barrier Switch can be used to block the power supply, it is able to disconnect the live equipment from the high-voltage maintenance equipment, and it can also see a significant disconnection point on it. Secondly, the Schneider barrier switch can be used with the circuit breaker to change the operation of the system.

Schneider automatic control instrument construction content and procedures Schneider automatic control instrument construction content and procedures

1. Construction preparation. Including the preparation of operating conditions (construction skills documents and detailed design documents), construction organization design, equipment list, data budget, and list of machined parts; 2. Cooperate with civil engineering majors to do a good job of pre-embedding and reserving work; 3. Cooperate with process equipment, ...

Schneider PLC signal light meaning Schneider PLC signal light meaning

Take the Schneider PLC with model number TWDLCAA40DRF as an example: The first PWR: is the meaning of power supply; The second RUN: is the PLC operation indicator; Long dark: The application is not fulfilling; Shine: The controller is in a stay or a mistake in performance; Solid on: The controller is in operation ...

How Schneider contactors work How Schneider contactors work

1. Contactor refers to an electrical appliance that uses a coil to flow through an electric current to generate a magnetic field, so that the contact is closed, and then the load can be controlled. Because it can quickly block the main circuit and frequently connect the equipment with high-current control circuits, it has been widely used in electrical engineering.

Schneider Intermediate Relay Model Letter Meaning Schneider Intermediate Relay Model Letter Meaning

RXM: Schneider's miniature center relay The first 2: indicates the number of contacts, and the normally open contact is 2 LB: Indicates that the product has LED light The second 2: indicates the number of contacts, and the normally closed contacts are 2 BD: Indicates that the supply voltage used is DC 24V ...

The difference between vector and general use of inverter - Schneider The difference between vector and general use of inverter - Schneider

1. The control accuracy of the vector type is higher than that of the general-purpose type. 2. The vector type has a large output torque at low speed, which can make the motor get a larger starting torque, which is suitable for application in the occasion of heavy load starting, such as: high-power long belt, hoist, etc. If used in some of the more common fields ...

Schneider UPS Energy Saving Method Schneider UPS Energy Saving Method

1. Flexible planning for on-demand expansion Generally, the construction of data centers is not in one step, and the expansion of the next few years will be considered, and the UPS capacity is generally considered to be larger in the design.

Schneider frame circuit breaker MT circuit breaker does not close the brake problem Schneider frame circuit breaker MT circuit breaker does not close the brake problem

Schneider structural circuit breaker is not stored (check the power supply of the energy storage motor, if it is normal, check whether it can be manually stored for energy) MX shunt coil live (disconnect MX coil power) The MN coil is not charged or faulty (a voltage higher than 0.85Un is applied to the MN) The circuit breaker is latched in ...

Where the inverter filter is suitable - Schneider Where the inverter filter is suitable - Schneider

1. LC filter LC filter is suitable for occasions with low requirements for harmonic content, and a good LC filter can control the distortion rate at 8-10%; 2. Harmonic filter This filter is suitable for harmonic ...

Schneider instrumentation maintenance precautions Schneider instrumentation maintenance precautions

1. When assembling and adjusting the appearance, the original position should be recorded for rehabilitation. 2. When repairing the appearance of precision instruments, if you accidentally bounce small parts away, you should first determine the position where you can fly down.

The form of power input and output - Schneider The form of power input and output - Schneider

1. Single-phase input/single-phase output: If the capacity is relatively small, the single-entry UPS hanging on any phase of the mains will not be troublesome to the three-way distribution balance of the mains, the load capacity is small, and the output line diameter (current value) of the single-phase output is not ...

Two of Schneider's low-voltage power distribution products won the Germany Red Dot Award Two of Schneider's low-voltage power distribution products won the Germany Red Dot Award

Beijing, China, April 6, 2022 – Recently, the list of "Red Dot Planning Awards", known as one of the world's three cutting-edge industrial planning awards, was grandly announced in Germany.

Measures to reduce the interference of Schneider inverters themselves Measures to reduce the interference of Schneider inverters themselves

(1) Add inductance and capacitance on the input side of Schneider inverter to form an LC filtering network (2) The power cord of the Schneider inverter is supplied directly from the transformer side. (3) If conditions permit, a separate ...

Anti-electromagnetic interference method - Schneider Anti-electromagnetic interference method - Schneider

There are three main sources of electromagnetic disturbance to the industrial system: first, space field disturbance, which enters the system through electromagnetic wave radiation; the second is power disturbance, which directly damages the system; The third is the signal disturbance channel, which enters the system through the front and rear channels connected to the host. In order to ensure that the instrumentation ...

Methods to reduce the interference of Schneider inverters themselves Methods to reduce the interference of Schneider inverters themselves

When there are high-frequency impact loads such as welding machines, electroplating power supplies, electrolytic power supplies, or slip ring power supply near the power supply system of Schneider inverter, the inverter itself is simply protected due to interference. It is recommended that users choose the following methods: ...

CATEGORIES BYPASS
Customer Service Center

Online Consultation:QQ


ContactContact

Contact: Manager Huang

Contact QQ: 3271883383

Contact number: 13522565663


Scan the code to add WeChat (please save the picture first on the mobile phone)

working hoursworking hours

Weekdays: 9:00-17:00

Holidays: Only emergencies are handled

Contact us

Contact us

Contact number QQ consultation
QQ consultation

3271883383

Company address
Back to top