CVE Database
/

CVE-2019-5073

Back to search

CVE-2019-5073

Published: Dec 18, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

An exploitable information exposure vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause an external tool to fail, resulting in uninitialized stack data to be copied to the response packet buffer. An attacker can send unauthenticated packets to trigger this vulnerability.

VendorProductVersions

n/a

WAGO PFC200

affected
Firmware version 03.01.07(13)
affected
Firmware version 03.00.39(12)

n/a

WAGO PFC100

affected
Firmware version 03.00.39(12)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now