605
VMScore

CVE-2021-34578

Published: 31/08/2021 Updated: 08/09/2021
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

This vulnerability allows an attacker who has access to the WBM to read and write settings-parameters of the device by sending specifically constructed requests without authentication on multiple WAGO PLCs in firmware versions up to FW07.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wago 750-890\\/040-000_firmware

wago 750-890\\/025-001_firmware

wago 750-890\\/025-002_firmware

wago 750-890\\/025-000_firmware

wago 750-832\\/000-002_firmware

wago 750-362_firmware

wago 750-823_firmware

wago 750-832_firmware

wago 750-363_firmware

wago 750-862_firmware

wago 750-891_firmware

wago 750-893_firmware