|
219071
|
7.8 |
HIGH
Local
|
wago
|
pfc200_firmware
|
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 Firmware version 03.02.02(14). A specially crafted XML cache file written to a s…
|
CWE-78
OS Command
|
CVE-2019-5175
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219072
|
7.8 |
HIGH
Local
|
wago
|
pfc200_firmware
|
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 version 03.02.02(14). A specially crafted XML cache file written to a specific l…
|
CWE-78
OS Command
|
CVE-2019-5174
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219073
|
7.8 |
HIGH
Local
|
wago
|
pfc200_firmware
|
An exploitable stack buffer overflow vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 version 03.02.02(14). A specially crafted XML cache file written to a speci…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5166
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219074
|
9.1 |
CRITICAL
Network
|
wago
|
pfc200_firmware
|
An exploitable remote code execution vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). A specially crafted XML file wi…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2019-5161
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219075
|
7.8 |
HIGH
Local
|
wago
|
e\!cockpit
|
An exploitable firmware downgrade vulnerability exists in the firmware update package functionality of the WAGO e!COCKPIT automation software v1.6.1.5. A specially crafted firmware update file can al…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-5158
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219076
|
7.2 |
HIGH
Network
|
wago
|
pfc200_firmware
|
An exploitable command injection vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 Firmware versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). An attacker can inject OS …
|
CWE-78
OS Command
|
CVE-2019-5157
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219077
|
7.8 |
HIGH
Local
|
wago
|
pfc200_firmware
|
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 Firmware version 03.02.02(14). A specially crafted XML cache file written to a s…
|
CWE-78
OS Command
|
CVE-2019-5173
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219078
|
7.8 |
HIGH
Local
|
wago
|
pfc200_firmware
|
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 Firmware version 03.02.02(14). An attacker can send a specially crafted packet t…
|
CWE-78
OS Command
|
CVE-2019-5172
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219079
|
7.8 |
HIGH
Local
|
wago
|
pfc200_firmware
|
An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 version 03.02.02(14). At 0x1e3f0 the extracted dns value from the xml file is us…
|
CWE-78
OS Command
|
CVE-2019-5167
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219080
|
9.1 |
CRITICAL
Network
|
wago
|
pfc200_firmware
|
An exploitable improper host validation vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 Firmware versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). A specially crafted…
|
NVD-CWE-noinfo
|
CVE-2019-5160
|
2024-11-21 13:44 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|