📦

750-852

Vendor: wago

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 2 Remote Access
Total CVEs 27 Total Indexed
Avg. EPSS 2.51% Exploit Prob.
Latest CVE CVE-2023-1620 Jun 26

Security Vulnerability Index

Page 2 / 3
9.8 CVSS

CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.

EPSS: 1.15%
9.8 CVSS

CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check.

EPSS: 1.15%
7.5 CVSS

CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input.

EPSS: 1.02%
9.8 CVSS

CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.

EPSS: 1.40%
9.8 CVSS

CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow.

EPSS: 1.27%
9.8 CVSS

CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.

EPSS: 1.28%
7.5 CVSS

CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow.

EPSS: 7.36%
5.3 CVSS

CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in an OS Command.

EPSS: 0.27%
9.1 CVSS

On WAGO PFC200 devices in different firmware versions with special crafted packets an authorised attacker with network access to the device can access the file system with higher privileges.

EPSS: 1.13%
5.3 CVSS

On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with network access to the device could cause a denial of service for the login service of the runtime.

EPSS: 1.04%