CVE-2021-34566
published 2022-11-09CVE-2021-34566: In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet containing OS commands to crash the…
critical9.1CVSS 3.1
AVNACLPRNUINSUCNIHAH
In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet containing OS commands to crash the iocheck process and write memory resulting in loss of integrity and DoS.
Affected
104 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| wago | 750-8100_firmware | < 18 | 18 |
| wago | 750-8100_firmware | — | — |
| wago | 750-8101_025-000_firmware | < 18 | 18 |
| wago | 750-8101_025-000_firmware | — | — |
| wago | 750-8101_firmware | < 18 | 18 |
| wago | 750-8101_firmware | — | — |
| wago | 750-8102_025-000_firmware | < 18 | 18 |
| wago | 750-8102_025-000_firmware | — | — |
| wago | 750-8102_firmware | < 18 | 18 |
| wago | 750-8102_firmware | — | — |
| wago | 750-81xx_xxx-xxxfw | FW1 – FW18 Patch 2 | — |
| wago | 750-8202_000-011_firmware | < 18 | 18 |
| wago | 750-8202_000-011_firmware | — | — |
| wago | 750-8202_000-012_firmware | < 18 | 18 |
| wago | 750-8202_000-012_firmware | — | — |
| wago | 750-8202_000-022_firmware | < 18 | 18 |
| wago | 750-8202_000-022_firmware | — | — |
| wago | 750-8202_025-000_firmware | < 18 | 18 |
| wago | 750-8202_025-000_firmware | — | — |
| wago | 750-8202_025-001_firmware | < 18 | 18 |
| wago | 750-8202_025-001_firmware | — | — |
| wago | 750-8202_025-002_firmware | < 18 | 18 |
| wago | 750-8202_025-002_firmware | — | — |
| wago | 750-8202_040-000_firmware | < 18 | 18 |
| wago | 750-8202_040-000_firmware | — | — |