CVE-2020-12506
Published: Sep 30, 2020
Modified: Sep 17, 2024
CVSS v3.1
9.1
Description
Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW03 allows an attacker to change the settings of the devices by sending specifically constructed requests without authentication This issue affects: WAGO 750-362, WAGO 750-363, WAGO 750-823, WAGO 750-832/xxx-xxx, WAGO 750-862, WAGO 750-891, WAGO 750-890/xxx-xxx in versions FW03 and prior versions.
| Vendor | Product | Versions |
|---|---|---|
WAGO | 750-362 | affected unspecified - <= FW03 |
WAGO | 750-363 | affected unspecified - <= FW03 |
WAGO | 750-823 | affected unspecified - <= FW03 |
WAGO | 750-832/xxx-xxx | affected unspecified - <= FW03 |
WAGO | 750-862 | affected unspecified - <= FW03 |
WAGO | 750-891 | affected unspecified - <= FW03 |
WAGO | 750-890/xxx-xxx | affected unspecified - <= FW03 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now