Vulnerabilities > Wago > 750 362 Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-31 CVE-2021-34578 Improper Authentication vulnerability in Wago products
This vulnerability allows an attacker who has access to the WBM to read and write settings-parameters of the device by sending specifically constructed requests without authentication on multiple WAGO PLCs in firmware versions up to FW07.
network
wago CWE-287
6.8
2020-09-30 CVE-2020-12506 Missing Authentication for Critical Function vulnerability in Wago products
Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW03 allows an attacker to change the settings of the devices by sending specifically constructed requests without authentication This issue affects: WAGO 750-362, WAGO 750-363, WAGO 750-823, WAGO 750-832/xxx-xxx, WAGO 750-862, WAGO 750-891, WAGO 750-890/xxx-xxx in versions FW03 and prior versions.
network
low complexity
wago CWE-306
6.4