Vulnerability index

Browse CVEs

73 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

750 363\/040 000 Firmware HIGH 7.5
CVE-2023-1150

Uncontrolled resource consumption in Series WAGO 750-3x/-8x products may allow an unauthenticated remote attacker to DoS the MODBUS server with speci…

Mitigation only
Fix from $1,950 2023-06-26
852 111\/000 001 Firmware CRITICAL 9.1
CVE-2022-3843

In WAGO Unmanaged Switch (852-111/000-001) in firmware version 01 an undocumented configuration interface without authorization allows an remote atta…

Mitigation only
Fix from $2,300 2023-02-16
750 8100 Firmware MEDIUM 5.4
CVE-2022-22511

Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attacker with user privileges…

Mitigation only
Fix from $1,600 2022-03-09
750 823 Firmware HIGH 8.1
CVE-2021-34595

A crafted request with invalid offsets may cause an out-of-bounds read or write access in CODESYS V2 Runtime Toolkit 32 Bit full and PLCWinNT prior t…

Mitigation only
Fix from $1,950 2021-10-26
750 8202 Firmware HIGH 7.5
CVE-2021-34593

In CODESYS V2 Runtime Toolkit 32 Bit full and PLCWinNT prior to versions V2.4.7.56 unauthenticated crafted invalid requests may result in several den…

No fix yet
Fix from $1,950 2021-10-26
750 823 Firmware MEDIUM 6.5
CVE-2021-34596

A crafted request may cause a read access to an uninitialized pointer in CODESYS V2 Runtime Toolkit 32 Bit full and PLCWinNT prior to versions V2.4.7…

Mitigation only
Fix from $1,600 2021-10-26
750 823 Firmware CRITICAL 9.1
CVE-2021-34584

Crafted web server requests can be utilised to read partial stack or heap memory or may trigger a denial-of- service condition due to a crash in the …

No fix yet
Fix from $2,300 2021-10-26
750 8214 Firmware HIGH 7.5
CVE-2021-34583EPSS 8%

Crafted web server requests may cause a heap-based buffer overflow and could therefore trigger a denial-of- service condition due to a crash in the C…

No fix yet
Fix from $1,950 2021-10-26
750 823 Firmware HIGH 7.5
CVE-2021-34585

In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests can trigger a parser error. Since the parser result is not checked under …

No fix yet
Fix from $1,950 2021-10-26
750 823 Firmware HIGH 7.5
CVE-2021-34586EPSS 13%

In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests may cause a Null pointer dereference in the CODESYS web server and may re…

No fix yet
Fix from $1,950 2021-10-26
750 890\/040 000 Firmware HIGH 8.1
CVE-2021-34578

This vulnerability allows an attacker who has access to the WBM to read and write settings-parameters of the device by sending specifically construct…

Mitigation only
Fix from $1,950 2021-08-31
750 880\/040 000 Firmware HIGH 7.5
CVE-2021-34581

Missing Release of Resource after Effective Lifetime vulnerability in OpenSSL implementation of WAGO 750-831/xxx-xxx, 750-880/xxx-xxx, 750-881, 750-8…

Mitigation only
Fix from $1,950 2021-08-31
750 893 Firmware CRITICAL 9.8
CVE-2021-30188

CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.

Mitigation only
Fix from $2,300 2021-05-25
750 893 Firmware CRITICAL 9.8
CVE-2021-30189

CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow.

Mitigation only
Fix from $2,300 2021-05-25
750 893 Firmware CRITICAL 9.8
CVE-2021-30190

CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.

Mitigation only
Fix from $2,300 2021-05-25
750 893 Firmware CRITICAL 9.8
CVE-2021-30192

CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check.

No fix yet
Fix from $2,300 2021-05-25
750 893 Firmware CRITICAL 9.8
CVE-2021-30193

CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.

Mitigation only
Fix from $2,300 2021-05-25
750 893 Firmware CRITICAL 9.1
CVE-2021-30194

CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read.

Mitigation only
Fix from $2,300 2021-05-25
750 893 Firmware HIGH 7.5
CVE-2021-30186EPSS 7%

CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow.

Mitigation only
Fix from $1,950 2021-05-25
750 893 Firmware HIGH 7.5
CVE-2021-30191

CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input.

Mitigation only
Fix from $1,950 2021-05-25
750 893 Firmware HIGH 7.5
CVE-2021-30195EPSS 7%

CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation.

Mitigation only
Fix from $1,950 2021-05-25
750 893 Firmware MEDIUM 5.3
CVE-2021-30187

CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in an OS Command.

Mitigation only
Fix from $1,600 2021-05-25
750 823 Firmware HIGH 7.5
CVE-2021-21000

On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with network access to the device could cause a denial…

Mitigation only
Fix from $1,950 2021-05-24
750 823 Firmware MEDIUM 6.5
CVE-2021-21001

On WAGO PFC200 devices in different firmware versions with special crafted packets an authorised attacker with network access to the device can acces…

Mitigation only
Fix from $1,600 2021-05-24
750 362 Firmware CRITICAL 9.1
CVE-2020-12506

Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW03 allows an attacker to change the settings of the devices by send…

Mitigation only
Fix from $2,300 2020-09-30
750 852 Firmware HIGH 8.2
CVE-2020-12505

Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW07 allows an attacker to change some special parameters without aut…

Mitigation only
Fix from $1,950 2020-09-30
Pfc200 Firmware HIGH 7.2
CVE-2020-6090

An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03.10(15). A specially crafted …

Mitigation only
Fix from $1,950 2020-06-11
Pfc200 Firmware HIGH 7.8
CVE-2019-5184

An exploitable double free vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. A specially crafted XML cache file…

No fix yet
Fix from $1,950 2020-03-23
Pfc200 Firmware HIGH 7.0
CVE-2019-5185

An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. An attacke…

No fix yet
Fix from $1,950 2020-03-23
Pfc200 Firmware HIGH 7.0
CVE-2019-5186

An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. An attacke…

No fix yet
Fix from $1,950 2020-03-23