WAGO: Series 750-3x/-8x prone to MODBUS server DoS
CVE-2023-1150
7.5HIGH
Summary
A resource consumption vulnerability has been identified in the WAGO 750-3x and 750-8x Series products, which could be exploited by an unauthenticated remote attacker. By sending specially crafted packets to the MODBUS server, the attacker could potentially trigger a denial of service (DoS), disrupting the availability of the service. This issue emphasizes the importance of securing networked industrial systems against unauthorized access and potential exploitation.
Affected Version(s)
750-332 0
750-362/xxx-xxx 0
750-363/xxx-xxx 0
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Roman Ezhov from Kaspersky