CVE-2020-12522
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
The reported vulnerability allows an attacker who has network access to the device to execute code with specially crafted packets in WAGO Series PFC 100 (750-81xx/xxx-xxx), Series PFC 200 (750-82xx/xxx-xxx), Series Wago Touch Panel 600 Standard Line (762-4xxx), Series Wago Touch Panel 600 Advanced Line (762-5xxx), Series Wago Touch Panel 600 Marine Line (762-6xxx) with firmware versions <=FW10.
Affected (5)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 10 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 8101/025 000 | All versions |
Wago 750 8102/025 000 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 10 |
| Running on/with | Platform Versions |
|---|---|
Wago 750 8202/000 012 | All versions |
Wago 750 8202/000 022 | All versions |
Wago 750 8202/040 000 | All versions |
Wago 750 8202/040 001 | All versions |
Wago 750 8206/025 000 | All versions |
Wago 750 8206/025 001 | All versions |
Wago 750 8206/040 000 | All versions |
Wago 750 8206/040 001 | All versions |
Wago 750 8207/025 000 | All versions |
Wago 750 8207/025 001 | All versions |
Wago 750 8208/025 000 | All versions |
Wago 750 8208/025 001 | All versions |
Wago 750 8210/025 000 | All versions |
Wago 750 8210/040 000 | All versions |
Wago 750 8211/040 000 | All versions |
Wago 750 8211/040 001 | All versions |
Wago 750 8212/025 000 | All versions |
Wago 750 8212/025 001 | All versions |
Wago 750 8212/025 002 | All versions |
Wago 750 8212/040 000 | All versions |
Wago 750 8212/040 010 | All versions |
Wago 750 8213/040 010 | All versions |
Wago 750 8216/025 000 | All versions |
Wago 750 8216/025 001 | All versions |
Wago 750 8217/025 000 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 10 |
| Running on/with | Platform Versions |
|---|---|
Wago 762 4301/8000 002 | All versions |
Wago 762 4302/8000 002 | All versions |
Wago 762 4303/8000 002 | All versions |
Wago 762 4304/8000 002 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 10 |
| Running on/with | Platform Versions |
|---|---|
Wago 762 5303/8000 002 | All versions |
Wago 762 5304/8000 002 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 10 |
| Running on/with | Platform Versions |
|---|---|
Wago 762 6201/8000 001 | All versions |
Wago 762 6202/8000 001 | All versions |
Wago 762 6203/8000 001 | All versions |
Wago 762 6204/8000 001 | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.