Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Uwe Disch

#32223of 53,630
7.8Total CVSS
Vulnerabilities · 1
PT-2021-20562
7.8
2021-08-31
Wago · Wago 750-881 · CVE-2021-34581
Name of the Vulnerable Software and Affected Versions: WAGO 750-831/xxx-xxx versions FW4 through FW15 WAGO 750-880/xxx-xxx versions FW4 through FW15 WAGO 750-881 versions FW4 through FW15 WAGO 750-889 versions FW4 through FW15 Description: The issue is related to a Missing Release of Resource after Effective Lifetime vulnerability in the OpenSSL implementation. This allows an unauthenticated attacker to cause a Denial of Service (DoS) on the device. Recommendations: For WAGO 750-831/xxx-xxx versions FW4 through FW15, update to a version later than FW15 to resolve the issue. For WAGO 750-880/xxx-xxx versions FW4 through FW15, update to a version later than FW15 to resolve the issue. For WAGO 750-881 versions FW4 through FW15, update to a version later than FW15 to resolve the issue. For WAGO 750-889 versions FW4 through FW15, update to a version later than FW15 to resolve the issue. As a temporary workaround, consider restricting access to the device to minimize the risk of exploitation.