An exploitable denial-of-service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A single packet can cause a denial of service and weaken credentials resulting in the default documented credentials being applied to the device. An attacker can send an unauthenticated packet to trigger this vulnerability.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published: 2019-12-18T20:35:41

Updated: 2024-08-04T19:47:56.073Z

Reserved: 2019-01-04T00:00:00

Link: CVE-2019-5080

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-12-18T21:15:14.240

Modified: 2019-12-27T15:37:59.187

Link: CVE-2019-5080

cve-icon Redhat

No data.