9.8
CVE-2019-10712
- EPSS 0.98%
- Veröffentlicht 07.05.2019 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:19:47
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Web-GUI on WAGO Series 750-88x (750-330, 750-352, 750-829, 750-831, 750-852, 750-880, 750-881, 750-882, 750-884, 750-885, 750-889) and Series 750-87x (750-830, 750-849, 750-871, 750-872, 750-873) devices has undocumented service access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Wago ≫ 750-830 Firmware Version < 06
Wago ≫ 750-849 Firmware Version < 08
Wago ≫ 750-871 Firmware Version < 11
Wago ≫ 750-872 Firmware Version < 07
Wago ≫ 750-873 Firmware Version < 07
Wago ≫ 750-330 Firmware Version < 14
Wago ≫ 750-352 Firmware Version < 14
Wago ≫ 750-829 Firmware Version < 14
Wago ≫ 750-831 Firmware Version < 14
Wago ≫ 750-852 Firmware Version < 14
Wago ≫ 750-880 Firmware Version < 14
Wago ≫ 750-881 Firmware Version < 14
Wago ≫ 750-882 Firmware Version < 14
Wago ≫ 750-884 Firmware Version < 14
Wago ≫ 750-885 Firmware Version < 14
Wago ≫ 750-889 Firmware Version < 14
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.98% | 0.761 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
CWE-798 Use of Hard-coded Credentials
The product contains hard-coded credentials, such as a password or cryptographic key.