CVE-2021-34581
WAGO: Denial of Service vulnerability inside the OpenSSL implementation
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Missing Release of Resource after Effective Lifetime vulnerability in OpenSSL implementation of WAGO 750-831/xxx-xxx, 750-880/xxx-xxx, 750-881, 750-889 in versions FW4 up to FW15 allows an unauthenticated attacker to cause DoS on the device.
Una vulnerabilidad de Falta de Liberación de Recursos después del Tiempo de Vida Efectivo en la implementación de OpenSSL de WAGO 750-831/xxx-xxx, 750-880/xxx-xxx, 750-881, 750-889 en versiones FW4 hasta FW15, permite a un atacante no autenticado causar DoS en el dispositivo
*Credits:
These vulnerabilities were reported to WAGO by: Uwe Disch. Coordination done by CERT@VDE
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2021-06-10 CVE Reserved
- 2021-08-31 CVE Published
- 2024-05-16 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-772: Missing Release of Resource after Effective Lifetime
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://cert.vde.com/en-us/advisories/vde-2021-038 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Wago Search vendor "Wago" | 750-880\/040-000 Firmware Search vendor "Wago" for product "750-880\/040-000 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-880\/040-000 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-880\/040-000 Search vendor "Wago" for product "750-880\/040-000" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-880\/025-002 Firmware Search vendor "Wago" for product "750-880\/025-002 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-880\/025-002 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-880\/025-002 Search vendor "Wago" for product "750-880\/025-002" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-880\/025-001 Firmware Search vendor "Wago" for product "750-880\/025-001 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-880\/025-001 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-880\/025-001 Search vendor "Wago" for product "750-880\/025-001" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-880\/025-000 Firmware Search vendor "Wago" for product "750-880\/025-000 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-880\/025-000 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-880\/025-000 Search vendor "Wago" for product "750-880\/025-000" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-831\/000-002 Firmware Search vendor "Wago" for product "750-831\/000-002 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-831\/000-002 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-831\/000-002 Search vendor "Wago" for product "750-831\/000-002" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-889 Firmware Search vendor "Wago" for product "750-889 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-889 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-889 Search vendor "Wago" for product "750-889" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-881 Firmware Search vendor "Wago" for product "750-881 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-881 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-881 Search vendor "Wago" for product "750-881" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-831 Firmware Search vendor "Wago" for product "750-831 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-831 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-831 Search vendor "Wago" for product "750-831" | - | - |
Safe
|
Wago Search vendor "Wago" | 750-880 Firmware Search vendor "Wago" for product "750-880 Firmware" | >= fw4 <= fw15 Search vendor "Wago" for product "750-880 Firmware" and version " >= fw4 <= fw15" | - |
Affected
| in | Wago Search vendor "Wago" | 750-880 Search vendor "Wago" for product "750-880" | - | - |
Safe
|