CVE Vulnerabilities

CVE-2022-34760

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Jul 13, 2022 | Modified: Jul 27, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A CWE-835: Loop with Unreachable Exit Condition (Infinite Loop) vulnerability exists that could cause a denial of service of the webserver due to improper handling of the cookies. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Opc_ua_module_for_m580_firmware Schneider-electric * 1.10 (including)

References