CVE-2015-6473

CWE-2544 documents4 sources
Severity
9.8CRITICAL
EPSS
2.9%
top 13.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 22
Latest updateMay 13

Description

WAGO IO 750-849 01.01.27 and WAGO IO 750-881 01.02.05 do not contain privilege separation.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

NVDwago/750-849_firmware01.01.27
NVDwago/758-870_firmware01.01.27, 01.02.05+1

🔴Vulnerability Details

2
GHSA
GHSA-m6c7-9xcw-465q: WAGO IO 750-849 012022-05-13
CVEList
CVE-2015-6473: WAGO IO 750-849 012017-08-22

💥Exploits & PoCs

1
Exploit-DB
Wireshark - 'infer_pkt_encap' Heap Out-of-Bounds Read2015-12-22