CVE-2019-10712
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
The Web-GUI on WAGO Series 750-88x (750-330, 750-352, 750-829, 750-831, 750-852, 750-880, 750-881, 750-882, 750-884, 750-885, 750-889) and Series 750-87x (750-830, 750-849, 750-871, 750-872, 750-873) devices has undocumented service access.
Affected (16)
Products: Wago: 750 830 Firmware, 750 849 Firmware, 750 871 Firmware, 750 872 Firmware, 750 873 Firmware, 750 330 Firmware, 750 352 Firmware, 750 829 Firmware, 750 831 Firmware, 750 852 Firmware, 750 880 Firmware, 750 881 Firmware, 750 882 Firmware, 750 884 Firmware, 750 885 Firmware, 750 889 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 06 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 830 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 08 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 849 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 11 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 871 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 07 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 872 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 07 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 873 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 330 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 352 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 829 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 831 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 852 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 880 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 881 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 882 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 884 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 885 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 14 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 889 | All versions |
References (18)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.