CVE-2018-8836
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Wago 750 Series PLCs with firmware version 10 and prior include a remote attack may take advantage of an improper implementation of the 3 way handshake during a TCP connection affecting the communications with commission and service tools. Specially crafted packets may also be sent to Port 2455/TCP/IP, used in Codesys management software, which may result in a denial-of-service condition of communications with commissioning and service tools.
Los PLC Wago 750 Series, con versiones de firmware 10 y anteriores, incluyen un ataque remoto que podría aprovecharse de una implementación incorrecta de la negociación a tres bandas durante una conexión TCP, lo que afecta a las comunicaciones con las herramientas de comisión y servicio. Los paquetes especialmente manipulados también podrían enviarse al puerto 2455/TCP/IP, empleado en el software de gestión Codesys, lo que podría resultar en una condición de denegación de servicio de las comunicaciones con las herramientas de comisión y servicio.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-03-20 CVE Reserved
- 2018-04-03 CVE Published
- 2023-11-21 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-404: Improper Resource Shutdown or Release
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/103726 | Third Party Advisory | |
https://ics-cert.us-cert.gov/advisories/ICSA-18-088-01 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Wago Search vendor "Wago" | 750-880 Firmware Search vendor "Wago" for product "750-880 Firmware" | <= 10 Search vendor "Wago" for product "750-880 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-880 Search vendor "Wago" for product "750-880" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-881 Firmware Search vendor "Wago" for product "750-881 Firmware" | <= 10 Search vendor "Wago" for product "750-881 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-881 Search vendor "Wago" for product "750-881" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-852 Firmware Search vendor "Wago" for product "750-852 Firmware" | <= 10 Search vendor "Wago" for product "750-852 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-852 Search vendor "Wago" for product "750-852" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-882 Firmware Search vendor "Wago" for product "750-882 Firmware" | <= 10 Search vendor "Wago" for product "750-882 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-882 Search vendor "Wago" for product "750-882" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-885 Firmware Search vendor "Wago" for product "750-885 Firmware" | <= 10 Search vendor "Wago" for product "750-885 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-885 Search vendor "Wago" for product "750-885" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-831 Firmware Search vendor "Wago" for product "750-831 Firmware" | <= 10 Search vendor "Wago" for product "750-831 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-831 Search vendor "Wago" for product "750-831" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-889 Firmware Search vendor "Wago" for product "750-889 Firmware" | <= 10 Search vendor "Wago" for product "750-889 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-889 Search vendor "Wago" for product "750-889" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-829 Firmware Search vendor "Wago" for product "750-829 Firmware" | <= 10 Search vendor "Wago" for product "750-829 Firmware" and version " <= 10" | - |
Affected
| in | Wago Search vendor "Wago" | 750-829 Search vendor "Wago" for product "750-829" | - | - |
Safe
|