CVE-2015-6473: Critical severity wago 750-849 firmware vulnerability
Published Aug 22, 2017
·Updated
WAGO IO 750-849 01.01.27 and WAGO IO 750-881 01.02.05 do not contain privilege separation.
Affected Software
5 affected components
WAGO 750-849 Firmware=01.01.27
WAGO 750-849
WAGO 758-870 Firmware=01.01.27
WAGO 758-870 Firmware=01.02.05
WAGO 758-870
Event History
Aug 22, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6473?
CVE-2015-6473 is considered a medium severity vulnerability due to its potential impact on privilege separation.
2
How do I fix CVE-2015-6473?
To mitigate CVE-2015-6473, upgrade to a firmware version that implements proper privilege separation.
3
What devices are affected by CVE-2015-6473?
CVE-2015-6473 affects the WAGO IO 750-849 with firmware version 01.01.27 and the WAGO IO 758-870 with firmware version 01.02.05.
4
What risks are associated with CVE-2015-6473?
The risks associated with CVE-2015-6473 include unauthorized access and control over the device due to inadequate privilege separation.
5
Is there a workaround for CVE-2015-6473 while waiting for a fix?
Currently, there is no documented workaround for CVE-2015-6473 other than upgrading to a secure firmware version.