Vulnerabilities > CVE-2015-6473 - 7PK - Security Features vulnerability in Wago 750-849 Firmware and 758-870 Firmware

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
wago
CWE-254
critical

Summary

WAGO IO 750-849 01.01.27 and WAGO IO 750-881 01.02.05 do not contain privilege separation.

Common Weakness Enumeration (CWE)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/136077/wago-credsprivdisclose.txt
idPACKETSTORM:136077
last seen2016-12-05
published2016-03-04
reporterKarn Ganeshen
sourcehttps://packetstormsecurity.com/files/136077/WAGO-IO-PLC-758-870-750-849-Credential-Management-Privilege-Separation.html
titleWAGO IO PLC 758-870 / 750-849 Credential Management / Privilege Separation