First published: Tue May 07 2019(Updated: )
The Web-GUI on WAGO Series 750-88x (750-330, 750-352, 750-829, 750-831, 750-852, 750-880, 750-881, 750-882, 750-884, 750-885, 750-889) and Series 750-87x (750-830, 750-849, 750-871, 750-872, 750-873) devices has undocumented service access.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wago 750-830 Firmware | <06 | |
Wago 750-830 | ||
Wago 750-849 Firmware | <08 | |
Wago 750-849 | ||
Wago 750-871 Firmware | <11 | |
Wago 750-871 | ||
Wago 750-872 Firmware | <07 | |
Wago 750-872 | ||
Wago 750-873 Firmware | <07 | |
Wago 750-873 | ||
Wago 750-330 Firmware | <14 | |
Wago 750-330 | ||
Wago 750-352 Firmware | <14 | |
WAGO 750-352 | ||
Wago 750-829 Firmware | <14 | |
Wago 750-829 | ||
Wago 750-831 Firmware | <14 | |
WAGO 750-831 | ||
Wago 750-852 Firmware | <14 | |
WAGO 750-852 | ||
Wago 750-880 Firmware | <14 | |
WAGO 750-880 | ||
Wago 750-881 Firmware | <14 | |
WAGO 750-881 | ||
Wago 750-882 Firmware | <14 | |
WAGO 750-882 | ||
Wago 750-884 Firmware | <14 | |
Wago 750-884 | ||
Wago 750-885 Firmware | <14 | |
WAGO 750-885 | ||
Wago 750-889 Firmware | <14 | |
WAGO 750-889 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-10712 is a vulnerability found in the Web-GUI on WAGO Series 750-88x and Series 750-87x devices, which allows undocumented service access.
CVE-2019-10712 has a severity score of 9.8, making it a critical vulnerability.
CVE-2019-10712 affects WAGO Series 750-88x (750-330, 750-352, 750-829, 750-831, 750-852, 750-880, 750-881, 750-882, 750-884, 750-885, 750-889) and Series 750-87x (750-830, 750-849, 750-871, 750-872, 750-873) devices.
To fix CVE-2019-10712, it is recommended to apply the latest firmware updates provided by WAGO.
More information about CVE-2019-10712 can be found at the following references: [1] http://www.securityfocus.com/bid/108482, [2] https://cert.vde.com/de-de/advisories/vde-2019-008, [3] https://lists.apache.org/thread.html/r0066c1e862613de402fee04e81cbe00bcd64b64a2711beb9a13c3b25@%3Ccommits.cassandra.apache.org%3E