Vulnerabilities > Wago > E Cockpit

DATE CVE VULNERABILITY TITLE RISK
2020-03-11 CVE-2019-5159 Improper Input Validation vulnerability in Wago E!Cockpit 1.6.0.7
An exploitable improper input validation vulnerability exists in the firmware update functionality of WAGO e!COCKPIT automation software v1.6.0.7.
network
wago CWE-20
6.8
2020-03-11 CVE-2019-5158 Use of Hard-coded Credentials vulnerability in Wago E!Cockpit 1.6.1.5
An exploitable firmware downgrade vulnerability exists in the firmware update package functionality of the WAGO e!COCKPIT automation software v1.6.1.5.
network
wago CWE-798
4.3
2020-03-11 CVE-2019-5107 Cleartext Transmission of Sensitive Information vulnerability in Wago E!Cockpit 1.5.1.1
A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1.
network
low complexity
wago CWE-319
5.0
2020-03-11 CVE-2019-5106 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Wago E!Cockpit 1.5.1.1
A hard-coded encryption key vulnerability exists in the authentication functionality of WAGO e!Cockpit version 1.5.1.1.
local
low complexity
wago CWE-327
2.1