CVE-2020-12516: WAGO: PLC families 750-88x and 750-352 prone to DoS attack
Published Dec 10, 2020
·Updated
Older firmware versions (FW1 up to FW10) of the WAGO PLC family 750-88x and 750-352 are vulnerable for a special denial of service attack.
Affected Software
26 affected components
WAGO 750-352
WAGO 750-831/xxx-xxx
WAGO 750-852
WAGO 750-880/xxx-xxx
WAGO 750-881
WAGO 750-889
WAGO 750-352 Firmware>=fw1<=fw10
WAGO 750-352
WAGO 750-831 Firmware>=fw1<=fw10
WAGO 750-831
WAGO 750-852 Firmware>=fw1<=fw10
WAGO 750-852
WAGO 750-880 Firmware>=fw1<=fw10
WAGO 750-880
WAGO 750-881 Firmware>=fw1<=fw10
WAGO 750-881
WAGO 750-889 Firmware>=fw1<=fw10
WAGO 750-889
WAGO 750-331 Firmware>=fw1<=fw10
WAGO 750-331
WAGO 750-829 Firmware>=fw1<=fw10
WAGO 750-829
WAGO 750-882 Firmware>=fw1<=fw10
WAGO 750-882
WAGO 750-885 Firmware>=fw1<=fw10
WAGO 750-885
Remediation
Patch Available
Information
Update the device to the latest FW version.
Event History
Dec 10, 2020
CVE Published
via MITRE·03:04 AM
Data Sourced
via MITRE·03:04 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-12516.
2
What is the severity of CVE-2020-12516?
The severity of CVE-2020-12516 is high with a CVSS score of 7.5.
3
Which WAGO PLC family versions are affected by CVE-2020-12516?
Older firmware versions (FW1 up to FW10) of the WAGO PLC family 750-88x and 750-352 are affected by CVE-2020-12516.
4
What is the impact of CVE-2020-12516?
CVE-2020-12516 can be exploited to carry out a special denial of service attack.
5
How can CVE-2020-12516 be fixed?
To fix CVE-2020-12516, users should update to a firmware version higher than FW10.