
CVE-2018-25108 – WAGO: Denial of service in 750-8xx controller due to uncontrolled resource consumption
https://notcve.org/view.php?id=CVE-2018-25108
16 Jan 2025 — An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource consumption. Un atacante remoto no autenticado puede provocar un DoS en el controlador debido al consumo descontrolado de recursos. An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource consumption. • https://cert.vde.com/en/advisories/VDE-2018-013 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2018-25090 – Wago: Improper Neutralization of Input During Web Page Generation in multiple devices
https://notcve.org/view.php?id=CVE-2018-25090
13 Mar 2024 — An unauthenticated remote attacker can use an XSS attack due to improper neutralization of input during web page generation. User interaction is required. This leads to a limited impact of confidentiality and integrity but no impact of availability. Un atacante remoto no autenticado puede utilizar un ataque XSS debido a una neutralización inadecuada de la entrada durante la generación de la página web. Se requiere la interacción del usuario. • https://cert.vde.com/en/advisories/VDE-2023-039 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •