Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

4 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.93%—Wago 750-363/040-000 FirmwareWago 750-362/040-000 FirmwareWago 750-362/000-001 FirmwareWago 750-891 Firmware+1426/6/202317/6/2026
Uncontrolled resource consumption in Series WAGO 750-3x/-8x products may allow an unauthenticated remote attacker to DoS the MODBUS server with specially crafted packets.
ModificadaAlta (8.1)0.96%—Wago 750-890/040-000 FirmwareWago 750-890/025-001 FirmwareWago 750-890/025-002 FirmwareWago 750-890/025-000 Firmware+831/8/202117/6/2026
This vulnerability allows an attacker who has access to the WBM to read and write settings-parameters of the device by sending specifically constructed requests without authentication on multiple WAGO PLCs in firmware versions up to FW07.
ModificadaCrítica (9.1)1.5%—Wago 750-362 FirmwareWago 750-363 FirmwareWago 750-823 FirmwareWago 750-832 Firmware+330/9/202017/6/2026
Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW03 allows an attacker to change the settings of the devices by sending specifically constructed requests without authentication This issue affects: WAGO 750-362, WAGO 750-363, WAGO 750-823, WAGO 750-832/xxx-xxx, WAGO 750-862, WAGO…
AnalizadaMedia (6.1)0.95%—Wago 750-362 FirmwareWago 750-363 FirmwareWago 750-823 FirmwareWago 750-832 Firmware+1012/10/201817/6/2026
WAGO 750-88X and WAGO 750-89X Ethernet Controller devices, versions 01.09.18(13) and before, have XSS in the SNMP configuration via the webserv/cplcfg/snmp.ssi SNMP_DESC or SNMP_LOC_SNMP_CONT field.