PT-2023-3836 · Wago · Wago 750-3X/-8X

Roman Ezhov

·

Published

2023-06-14

·

Updated

2024-10-02

·

CVE-2023-1150

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions WAGO 750-3x/-8x products (affected versions not specified)
Description The issue is related to uncontrolled resource consumption in the mentioned products, which may allow an unauthenticated remote attacker to cause a denial of service (DoS) of the MODBUS server by sending specially crafted packets. This could potentially disrupt the service, making it unavailable to users.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Missing Release of Resource after Effective Lifetime

Weakness Enumeration

Related Identifiers

BDU:2023-04128
CVE-2023-1150

Affected Products

Wago 750-3X/-8X