Wago 750-8202 Firmware vulnerabilities
27 known vulnerabilities affecting wago/750-8202_firmware.
Total CVEs
27
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL9HIGH12MEDIUM6
Vulnerabilities
Page 2 of 2
CVE-2021-30193CRITICALCVSS 9.8fixed in 03.06.19_\(18\)2021-05-25
CVE-2021-30193 [CRITICAL] CWE-787 CVE-2021-30193: CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.
CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.
nvd
CVE-2021-30191HIGHCVSS 7.5fixed in 03.06.19_\(18\)2021-05-25
CVE-2021-30191 [HIGH] CWE-120 CVE-2021-30191: CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input.
CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input.
nvd
CVE-2021-30186HIGHCVSS 7.5fixed in 03.06.19_\(18\)2021-05-25
CVE-2021-30186 [HIGH] CWE-787 CVE-2021-30186: CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow.
CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow.
nvd
CVE-2021-30195HIGHCVSS 7.5fixed in 03.06.19_\(18\)2021-05-25
CVE-2021-30195 [HIGH] CWE-125 CVE-2021-30195: CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation.
CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation.
nvd
CVE-2021-30187MEDIUMCVSS 5.3fixed in 03.06.19_\(18\)2021-05-25
CVE-2021-30187 [MEDIUM] CWE-78 CVE-2021-30187: CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in
CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in an OS Command.
nvd
CVE-2021-21000HIGHCVSS 7.5fixed in 03.06.19_\(18\)2021-05-24
CVE-2021-21000 [MEDIUM] CWE-770 CVE-2021-21000: On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with
On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with network access to the device could cause a denial of service for the login service of the runtime.
nvd
CVE-2021-21001MEDIUMCVSS 6.5fixed in 03.06.19_\(18\)2021-05-24
CVE-2021-21001 [CRITICAL] CWE-22 CVE-2021-21001: On WAGO PFC200 devices in different firmware versions with special crafted packets an authorised att
On WAGO PFC200 devices in different firmware versions with special crafted packets an authorised attacker with network access to the device can access the file system with higher privileges.
nvd
← Previous2 / 2