Stack Buffer Overflow in WAGO PFC 200 Firmware by WAGO
CVE-2019-5178

7.8HIGH

Key Information:

Vendor

Wago

Vendor
CVE Published:
12 March 2020

What is CVE-2019-5178?

An exploitable stack buffer overflow exists in the iocheckd service's I/O-Check functionality within WAGO PFC 200 Firmware. An attacker can send a specially crafted packet that, when parsed, causes an overflow of the destination buffer. The overflow occurs during hostname value processing, specifically if the provided hostname exceeds a certain length, leading to potential service crashes. This vulnerability highlights the importance of secure coding practices and robust validation of input data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

WAGO PFC200 Firmware version 03.02.02(14)

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.