CVE Database
/

CVE-2019-5075

Back to search

CVE-2019-5075

Published: Dec 18, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

An exploitable stack buffer overflow vulnerability exists in the command line utility getcouplerdetails of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets sent to the iocheckd service "I/O-Check" can cause a stack buffer overflow in the sub-process getcouplerdetails, resulting in code execution. An attacker can send unauthenticated packets to trigger this vulnerability.

VendorProductVersions

n/a

WAGO PFC200

affected
Firmware version 03.01.07(13)
affected
Firmware version 03.00.39(12)

n/a

WAGO PFC100

affected
Firmware version 03.00.39(12)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now