CWE-404 Improper Resource Shutdown or Release vulnerability exists that could cause partial Denial of Service on Machine Expert protocol when an unauthenticated attacker sends malicious payload to occupy active communication channels.
Metrics
Affected Vendors & Products
References
History
Wed, 11 Mar 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Schneider-electric
Schneider-electric modicon M241/m251 Schneider-electric modicon M262 |
|
| Vendors & Products |
Schneider-electric
Schneider-electric modicon M241/m251 Schneider-electric modicon M262 |
Tue, 10 Mar 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Mar 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Tue, 10 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-404 Improper Resource Shutdown or Release vulnerability exists that could cause partial Denial of Service on Machine Expert protocol when an unauthenticated attacker sends malicious payload to occupy active communication channels. | |
| Weaknesses | CWE-404 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2026-03-10T17:25:20.028Z
Reserved: 2025-12-02T16:20:27.551Z
Link: CVE-2025-13901
Updated: 2026-03-10T17:24:41.796Z
Status : Awaiting Analysis
Published: 2026-03-10T18:17:52.063
Modified: 2026-03-11T13:53:47.157
Link: CVE-2025-13901
No data.