CVE-2019-5074: Buffer Overflow
An exploitable stack buffer overflow vulnerability exists in the iocheckd service ''I/O-Check'' functionality of WAGO PFC200 Firmware version 03.01.07(13), WAGO PFC200 Firmware version 03.00.39(12) and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause a stack buffer overflow, resulting in code execution. An attacker can send unauthenticated packets to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-5074?
CVE-2019-5074 is an exploitable stack buffer overflow vulnerability in the iocheckd service I/O-Check function of WAGO PFC200 Firmware versions 03.01.07(13), 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12).
What is the severity of CVE-2019-5074?
CVE-2019-5074 has a severity rating of 9.8 (critical).
Which software versions are affected by CVE-2019-5074?
CVE-2019-5074 affects WAGO PFC200 Firmware versions 03.01.07(13), 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12).
How does CVE-2019-5074 impact the affected software?
CVE-2019-5074 allows attackers to cause a stack buffer overflow by sending specially crafted packets to the iocheckd service, potentially leading to arbitrary code execution.
Is there a fix available for CVE-2019-5074?
At the moment, there is no official fix available for CVE-2019-5074. It is recommended to contact the vendor for mitigation strategies and updates.