CVE-2019-5078
published 2019-12-18CVE-2019-5078: An exploitable denial of service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and…
PriorityP353critical9.1CVSS 3.1
AVNACLPRNUINSUCNIHAH
EPSS
1.65%
73.8th percentile
An exploitable denial of service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause a denial of service, resulting in the device entering an error state where it ceases all network communications. An attacker can send unauthenticated packets to trigger this vulnerability.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| wago | pfc_100_firmware | — | — |
| wago | pfc_200_firmware | — | — |
| wago | pfc_200_firmware | — | — |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
nvdv2.09.4CRITICALAV:N/AC:L/Au:N/C:N/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
WAGO I/O-CHECK
cisa_ics·2020-03-05·CVSS 5.3
[MEDIUM] WAGO I/O-CHECK
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
WAGO I/O-CHECK
Last RevisedMarch 05, 2020
Alert CodeICSA-20-065-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 10.0
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: WAGO
- Equipment: I/O-CHECK Series PFC100 and Series PFC200
- Vulnerabilities: Information Exposure Through Sent Data, Buffer Access with Incorrect Length Value, Missing Authentication for Critical Function, Classic Buffer Overflow
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could allow an attacker to change settings, delete the application, run remote code, cause a system
GHSA
GHSA-hjp3-mgv4-cwvx: An exploitable denial of service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03
ghsa_unreviewed·2022-05-24
CVE-2019-5078 [HIGH] GHSA-hjp3-mgv4-cwvx: An exploitable denial of service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03
An exploitable denial of service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause a denial of service, resulting in the device entering an error state where it ceases all network communications. An attacker can send unauthenticated packets to trigger this vulnerability.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Multiple vulnerabilities in WAGO PFC200
blogs_talos·2019-12-16·CVSS 5.3
[MEDIUM] Vulnerability Spotlight: Multiple vulnerabilities in WAGO PFC200
Kelly Leuschner of Cisco Talos discovered these vulnerabilities. Blog by Jon Munshaw.
The WAGO PFC200 and PFC100 controllers contain multiple exploitable vulnerabilities. The PFC200 is one of WAGO’s programmable automation controllers that are used in many industries including automotive, rail, power engineering, manufacturing and building management. The vulnerabilities disclosed here all have their root cause within the protocol handling code of the I/O Check (iocheckd)
configuration service used by the controllers. The vulnerabilities discussed here could allow an attacker to remotely execute code, deny service to the device or weaken device login credentials.
In accordance with our coordinated disclosure policy, Cisco Talos worked with WAGO to ensure that these issues are resolved a
Talos
Vulnerability Spotlight: Multiple vulnerabilities in WAGO PFC200
blogs_talos·2019-12-16·CVSS 5.3
[MEDIUM] Vulnerability Spotlight: Multiple vulnerabilities in WAGO PFC200
## Vulnerability Spotlight: Multiple vulnerabilities in WAGO PFC200
Kelly Leuschner of Cisco Talos discovered these vulnerabilities. Blog by Jon Munshaw.
The WAGO PFC200 and PFC100 controllers contain multiple exploitable vulnerabilities. The PFC200 is one of WAGO’s programmable automation controllers that are used in many industries including automotive, rail, power engineering, manufacturing and building management. The vulnerabilities disclosed here all have their root cause within the protocol handling code of the I/O Check (iocheckd)
configuration service used by the controllers. The vulnerabilities discussed here could allow an attacker to remotely execute code, deny service to the device or weaken device login credentials.
In accordance with our coordinated disclosure policy, Ci
2019-12-18
Published