PT-2017-10086 · Wago · Wago 750-8202/Pfc200+2
Maxim Rupp
·
Published
2017-02-13
·
Updated
2017-06-28
·
CVE-2016-9362
CVSS v2.0
6.4
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
WAGO 750-8202/PFC200 versions prior to FW04
WAGO 750-881 versions prior to FW09
WAGO 0758-0874-0000-0111 (affected versions not specified)
Description
An issue allows a malicious user to edit and view settings without authenticating by accessing a specific uniform resource locator (URL) on the web server.
Recommendations
For WAGO 750-8202/PFC200 versions prior to FW04, update to FW04 or later.
For WAGO 750-881 versions prior to FW09, update to FW09 or later.
For WAGO 0758-0874-0000-0111, at the moment, there is no information about a newer version that contains a fix for this issue.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wago 0758-0874-0000-0111
Wago 750-8202/Pfc200
Wago 750-881