CVE-2018-16210: XSS
WAGO 750-88X and WAGO 750-89X Ethernet Controller devices, versions 01.09.18(13) and before, have XSS in the SNMP configuration via the webserv/cplcfg/snmp.ssi SNMPDESC or SNMPLOCSNMPCONT field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-16210?
CVE-2018-16210 has been classified with a high severity due to its potential impact on device security through cross-site scripting.
How do I fix CVE-2018-16210?
To fix CVE-2018-16210, upgrade the WAGO 750-88X or 750-89X Ethernet Controller devices to the latest firmware version beyond 01.09.18(13).
What devices are affected by CVE-2018-16210?
CVE-2018-16210 affects WAGO 750-88X and WAGO 750-89X Ethernet Controller devices running firmware versions 01.09.18(13) and earlier.
What type of vulnerability is CVE-2018-16210?
CVE-2018-16210 is classified as a Cross-Site Scripting (XSS) vulnerability.
How can CVE-2018-16210 be exploited?
CVE-2018-16210 can be exploited by injecting malicious scripts into the SNMP configuration fields via the web interface.