CVE-2020-12516

Published: Dic 10, 2020 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2020-4818 Aliases: GSD-2020-12516
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,5
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: high
MEDIUM 5,0
Access Vector: network
Access Complexity: low
Authentication: none
Confidentiality: none
Integrity: none
Availability: partial

Description

AI Translation Available

Older firmware versions (FW1 up to FW10) of the WAGO PLC family 750-88x and 750-352 are vulnerable for a special denial of service attack.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0037
Percentile
0,6th
Updated

EPSS Score Trend (Last 90 Days)

400

Uncontrolled Resource Consumption

Draft
Common Consequences
Security Scopes Affected:
Availability Access Control Other
Potential Impacts:
Dos: Crash, Exit, Or Restart Dos: Resource Consumption (Cpu) Dos: Resource Consumption (Memory) Dos: Resource Consumption (Other) Bypass Protection Mechanism Other
Applicable Platforms
All platforms may be affected
View CWE Details
Operating System

750-852 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-852_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-889 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-889_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-882 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-882_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-881 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-881_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-829 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-829_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-352 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-352_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-831 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-831_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-331 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-331_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-880 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-880_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

750-885 Firmware by Wago

Version Range Affected
From fw1 (inclusive)
To fw10 (inclusive)
cpe:2.3:o:wago:750-885_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://cert.vde.com/en-us/advisories/vde-2020-042
https://us-cert.cisa.gov/ics/advisories/icsa-20-308-01
Mitigation Third Party Advisory US Government Resource
https://us-cert.cisa.gov/ics/advisories/icsa-20-308-01
https://cert.vde.com/en-us/advisories/vde-2020-042
https://us-cert.cisa.gov/ics/advisories/icsa-20-308-01
Mitigation Third Party Advisory US Government Resource
https://us-cert.cisa.gov/ics/advisories/icsa-20-308-01