// For flags

CVE-2020-12506

WAGO: Authentication Bypass Vulnerability in WAGO 750-36X and WAGO 750-8XX Versions <= FW03

Severity Score

9.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW03 allows an attacker to change the settings of the devices by sending specifically constructed requests without authentication This issue affects: WAGO 750-362, WAGO 750-363, WAGO 750-823, WAGO 750-832/xxx-xxx, WAGO 750-862, WAGO 750-891, WAGO 750-890/xxx-xxx in versions FW03 and prior versions.

La vulnerabilidad de autenticación inadecuada en la serie WAGO 750-8XX con versión FW versiones anteriores e iguales a FW03 permite a un atacante cambiar la configuración de los dispositivos mediante el envío de solicitudes específicamente construidas sin autenticación Este problema afecta a: WAGO 750-362, WAGO 750-363, WAGO 750-823, WAGO 750-832/xxx-xxx, WAGO 750-862, WAGO 750-891, WAGO 750-890/xxx-xxx en versiones FW03 y anteriores.

*Credits: Maxim Rupp (https://rupp.it) reported this vulnerability to WAGO., coordinated by CERT@VDE
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-04-30 CVE Reserved
  • 2020-09-30 CVE Published
  • 2023-06-16 EPSS Updated
  • 2024-09-17 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-306: Missing Authentication for Critical Function
CAPEC
References (1)
URL Tag Source
https://cert.vde.com/en-us/advisories/vde-2020-028 Third Party Advisory
URL Date SRC
URL Date SRC
URL Date SRC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Wago
Search vendor "Wago"
750-362 Firmware
Search vendor "Wago" for product "750-362 Firmware"
<= fw03
Search vendor "Wago" for product "750-362 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-362
Search vendor "Wago" for product "750-362"
--
Safe
Wago
Search vendor "Wago"
750-363 Firmware
Search vendor "Wago" for product "750-363 Firmware"
<= fw03
Search vendor "Wago" for product "750-363 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-363
Search vendor "Wago" for product "750-363"
--
Safe
Wago
Search vendor "Wago"
750-823 Firmware
Search vendor "Wago" for product "750-823 Firmware"
<= fw03
Search vendor "Wago" for product "750-823 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-823
Search vendor "Wago" for product "750-823"
--
Safe
Wago
Search vendor "Wago"
750-832 Firmware
Search vendor "Wago" for product "750-832 Firmware"
<= fw03
Search vendor "Wago" for product "750-832 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-832
Search vendor "Wago" for product "750-832"
--
Safe
Wago
Search vendor "Wago"
750-862 Firmware
Search vendor "Wago" for product "750-862 Firmware"
<= fw03
Search vendor "Wago" for product "750-862 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-862
Search vendor "Wago" for product "750-862"
--
Safe
Wago
Search vendor "Wago"
750-891 Firmware
Search vendor "Wago" for product "750-891 Firmware"
<= fw03
Search vendor "Wago" for product "750-891 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-891
Search vendor "Wago" for product "750-891"
--
Safe
Wago
Search vendor "Wago"
750-890 Firmware
Search vendor "Wago" for product "750-890 Firmware"
<= fw03
Search vendor "Wago" for product "750-890 Firmware" and version " <= fw03"
-
Affected
in Wago
Search vendor "Wago"
750-890
Search vendor "Wago" for product "750-890"
--
Safe