Stack Buffer Overflow in WAGO PFC 200 Firmware Affects I/O-Check Service
CVE-2019-5180
7.8HIGH
What is CVE-2019-5180?
A stack buffer overflow vulnerability exists in the iocheckd service’s I/O-Check functionality within the WAGO PFC 200 Firmware version 03.02.02(14). This vulnerability can be exploited by attackers who send specially crafted packets designed to manipulate the parsing of the cache file. Specifically, the overflow occurs in the destination buffer due to an inadequate handling of IP address values, where values exceeding a specific length lead to a potential crash of the service. Proper input validation is crucial to mitigate these risks and ensure the integrity and availability of the firmware.
Affected Version(s)
WAGO PFC200 Firmware version 03.02.02(14)