Wago Pfc200 Firmware vulnerabilities
12 known vulnerabilities affecting wago/wago_pfc200_firmware.
Total CVEs
12
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH9MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-5160CRITICALCVSS 9.1vversion 03.02.02(14)vversion 03.01.07(13)+1 more2020-03-11
CVE-2019-5160 [CRITICAL] CVE-2019-5160: An exploitable improper host validation vulnerability exists in the Cloud Connectivity functionality
An exploitable improper host validation vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 Firmware versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). A specially crafted HTTPS POST request can cause the software to connect to an unauthorized host, resulting in unauthorized access to firmware update functionality. An attacker ca
cvelistv5nvd
CVE-2019-5161CRITICALCVSS 9.1vversion 03.02.02(14)vversion 03.01.07(13)+1 more2020-03-11
CVE-2019-5161 [CRITICAL] CWE-345 CVE-2019-5161: An exploitable remote code execution vulnerability exists in the Cloud Connectivity functionality of
An exploitable remote code execution vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). A specially crafted XML file will direct the Cloud Connectivity service to download and execute a shell script with root privileges.
cvelistv5nvd
CVE-2019-5166HIGHCVSS 7.8vversion 03.02.02(14)2020-03-11
CVE-2019-5166 [HIGH] CWE-787 CVE-2019-5166: An exploitable stack buffer overflow vulnerability exists in the iocheckd service ‘I/O-Check’ functi
An exploitable stack buffer overflow vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 version 03.02.02(14). A specially crafted XML cache file written to a specific location on the device can cause a stack buffer overflow, resulting in code execution. An attacker can send a specially crafted packet to trigger the pa
cvelistv5nvd
CVE-2019-5157HIGHCVSS 7.2vversion 03.02.02(14)vversion 03.01.07(13)+1 more2020-03-11
CVE-2019-5157 [HIGH] CWE-78 CVE-2019-5157: An exploitable command injection vulnerability exists in the Cloud Connectivity functionality of WAG
An exploitable command injection vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 Firmware versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). An attacker can inject OS commands into the TimeoutUnconfirmed parameter value contained in the Firmware Update command.
cvelistv5nvd
CVE-2019-5134HIGHCVSS 7.5vversion 03.00.39(12)vversion 03.01.07(13)2020-03-11
CVE-2019-5134 [HIGH] CVE-2019-5134: An exploitable regular expression without anchors vulnerability exists in the Web-Based Management (
An exploitable regular expression without anchors vulnerability exists in the Web-Based Management (WBM) authentication functionality of WAGO PFC200 versions 03.00.39(12) and 03.01.07(13), and WAGO PFC100 version 03.00.39(12). A specially crafted authentication request can bypass regular expression filters, resulting in sensitive information disclosure.
cvelistv5nvd
CVE-2019-5168HIGHCVSS 7.8vversion 03.02.02(14)2020-03-11
CVE-2019-5168 [HIGH] CWE-78 CVE-2019-5168: An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function o
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 version 03.02.02(14). An attacker can send a specially crafted XML cache file At 0x1e8a8 the extracted domainname value from the xml file is used as an argument to /etc/config-tools/edit_dns_server domain-name= using sprintf().This comma
cvelistv5nvd
CVE-2019-5167HIGHCVSS 7.8vversion 03.02.02(14)2020-03-11
CVE-2019-5167 [HIGH] CWE-78 CVE-2019-5167: An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function o
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 version 03.02.02(14). At 0x1e3f0 the extracted dns value from the xml file is used as an argument to /etc/config-tools/edit_dns_server %s dns-server-nr=%d dns-server-name= using sprintf(). This command is later executed via a call to sys
cvelistv5nvd
CVE-2019-5156HIGHCVSS 7.2vversion 03.02.02(14)vversion 03.01.07(13)+1 more2020-03-11
CVE-2019-5156 [HIGH] CWE-78 CVE-2019-5156: An exploitable command injection vulnerability exists in the cloud connectivity functionality of WAG
An exploitable command injection vulnerability exists in the cloud connectivity functionality of WAGO PFC200 versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). An attacker can inject operating system commands into the TimeoutPrepared parameter value contained in the firmware update command.
cvelistv5nvd
CVE-2019-5149HIGHCVSS 7.5vversion 03.00.39(12)vversion 03.01.07(13)2020-03-11
CVE-2019-5149 [HIGH] CWE-400 CVE-2019-5149: The WBM web application on firmwares prior to 03.02.02 and 03.01.07 on the WAGO PFC100 and PFC2000,
The WBM web application on firmwares prior to 03.02.02 and 03.01.07 on the WAGO PFC100 and PFC2000, respectively, runs on a lighttpd web server and makes use of the FastCGI module, which is intended to provide high performance for all Internet applications without the penalties of Web server APIs. However, the default configuration of this module appears
cvelistv5nvd
CVE-2019-5174HIGHCVSS 7.8vversion 03.02.02(14)2020-03-11
CVE-2019-5174 [HIGH] CWE-78 CVE-2019-5174: An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function o
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 version 03.02.02(14). A specially crafted XML cache file written to a specific location on the device can be used to inject OS commands. An attacker can send a specially crafted packet to trigger the parsing of this cache file.At 0x1e9fc
cvelistv5nvd
CVE-2019-5155HIGHCVSS 7.2vversion 03.02.02(14)vversion 03.01.07(13)+1 more2020-03-11
CVE-2019-5155 [HIGH] CWE-78 CVE-2019-5155: An exploitable command injection vulnerability exists in the cloud connectivity feature of WAGO PFC2
An exploitable command injection vulnerability exists in the cloud connectivity feature of WAGO PFC200. An attacker can inject operating system commands into any of the parameter values contained in the firmware update command. This affects WAGO PFC200 Firmware version 03.02.02(14), version 03.01.07(13), and version 03.00.39(12)
cvelistv5nvd
CVE-2019-5135MEDIUMCVSS 5.3vversion 03.00.39(12)vversion 03.01.07(13)2020-03-11
CVE-2019-5135 [MEDIUM] CWE-327 CVE-2019-5135: An exploitable timing discrepancy vulnerability exists in the authentication functionality of the We
An exploitable timing discrepancy vulnerability exists in the authentication functionality of the Web-Based Management (WBM) web application on WAGO PFC100/200 controllers. The WBM application makes use of the PHP crypt() function which can be exploited to disclose hashed user credentials. This affects WAGO PFC200 Firmware version 03.00.39(12) and ver
cvelistv5nvd