CVE-2021-34567

CWE-125Out-of-bounds Read3 documents3 sources
Severity
8.2HIGH
EPSS
0.9%
top 24.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 9

Description

In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet containing OS commands to provoke a denial of service and an limited out-of-bounds read.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:HExploitability: 3.9 | Impact: 4.2

Affected Packages55 packages

🔴Vulnerability Details

2
GHSA
GHSA-xg29-9vrx-m2qc: In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet containing OS commands to provok2022-11-09
CVEList
WAGO I/O-Check Service prone to Out-of-bounds Read2022-11-09
CVE-2021-34567 (HIGH CVSS 8.2) | In WAGO I/O-Check Service in multip | cvebase.io