CWE-404 Improper Resource Shutdown or Release vulnerability exists that could cause partial Denial of Service on Machine Expert protocol when an unauthenticated attacker sends malicious payload to occupy active communication channels.
References
| Link | Resource |
|---|---|
| https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2026-069-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-069-01.pdf | Vendor Advisory Mitigation Patch |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
History
No history.
Information
Published : 2026-03-10 18:17
Updated : 2026-06-23 14:38
NVD link : CVE-2025-13901
Mitre link : CVE-2025-13901
CVE.ORG link : CVE-2025-13901
JSON object : View
Products Affected
schneider-electric
- modicon_m262
- modicon_m262_firmware
- modicon_m251_firmware
- modicon_m251
- modicon_m241
- modicon_m241_firmware
CWE
CWE-404
Improper Resource Shutdown or Release
