5
CVSSv2

CVE-2018-8836

Published: 03/04/2018 Updated: 09/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Wago 750 Series PLCs with firmware version 10 and prior include a remote attack may take advantage of an improper implementation of the 3 way handshake during a TCP connection affecting the communications with commission and service tools. Specially crafted packets may also be sent to Port 2455/TCP/IP, used in Codesys management software, which may result in a denial-of-service condition of communications with commissioning and service tools.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wago 750-880_firmware

wago 750-881_firmware

wago 750-852_firmware

wago 750-882_firmware

wago 750-885_firmware

wago 750-831_firmware

wago 750-889_firmware

wago 750-829_firmware