CVE-2017-6030 describes a predictable TCP initial sequence number vulnerability in Schneider Electric Modicon M221, M241, and M251 PLCs with specific firmware versions. This flaw allows an attacker to predict future sequence numbers based on previous values. The vulnerability has a CVSS score of 6.5 (Medium), indicating it can be exploited remotely with low complexity, potentially leading to spoofed or disrupted TCP connections (partial integrity and availability impact). There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or KEV listing. While community discussion and media coverage are minimal, SecurityWeek did report on Schneider Electric's patches for this and other flaws.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.0.3.20CPE matchmatch criteria | cpe:2.3:o:schneider-electric:modicon_m241_firmware:*:*:*:*:*:*:*:* | ||
<= 4.0.3.20CPE matchmatch criteria | cpe:2.3:o:schneider-electric:modicon_m251_firmware:*:*:*:*:*:*:*:* | ||
<= 1.1.1.5CPE matchmatch criteria | cpe:2.3:o:schneider-electric:modicon_m221_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.