Track vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.2

CVE-2026-3869: Modicon M580 PLC may allow unauthorized access

CVE-2026-3869 · published 14 days ago
Summary

The Modicon M580 and Modicon M580 Safety programmable controllers use a login routine that can be bypassed. This means an attacker could pretend to be a trusted user and change or stop the equipment, risking data loss or production downtime. Install the latest firmware from Schneider Electric and verify the controller's login settings right away.

What to do

The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.

Affected software
VendorProductAffected versions
schneider electric modicon m580 All versions with an application level below 4.00
schneider electric modicon m580 safety All versions with an application level below 4.20
Original advisory text
CWE-303 : Incorrect Implementation of Authentication Algorithm vulnerability exists that could cause loss of confidentiality, integrity and availability of the PLC provided an application project w...
CWE-303 : Incorrect Implementation of Authentication Algorithm vulnerability exists that could cause loss of confidentiality, integrity and availability of the PLC provided an application project with a lower application level is running on the PLC.
Severity
9.2 Critical
Exploitation
EPSS <1%
Type
CWE-303Incorrect Implementation of Authentication Algorithm
Timeline
Published11 Sep 2026
Updated25 Sep 2026
First seen11 Sep 2026
Sources
CVE-2026-3869 · NVD
CVE-2026-3869 · MITRE
Track software like this
Free during beta