The vendor explicitly identifies these products as affected by this CVE.
- RUGGEDCOM RMC30
- RUGGEDCOM RMC30NC
- RUGGEDCOM RP110
- RUGGEDCOM RP110NC
- RUGGEDCOM RS400
- RUGGEDCOM RS400NC
- RUGGEDCOM RS401
- RUGGEDCOM RS401NC
- RUGGEDCOM RS416
- RUGGEDCOM RS416NC
- RUGGEDCOM RS416NCv2 V4.X
- RUGGEDCOM RS416NCv2 V5.X
- Summary
- In some configurations the affected products wrongly enable the Modbus service in non-managed VLANS. Only serial devices are affected by this vulnerability.
- Remediation
- Update to V4.3.10 or later version
