CVE-2019-10712 Information

Description

The Web-GUI on WAGO Series 750-88x (750-330 750-352 750-829 750-831 750-852 750-880 750-881 750-882 750-884 750-885 750-889) and Series 750-87x (750-830 750-849 750-871 750-872 750-873) devices has undocumented service access.

CVSS Vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Reference

http://www.securityfocus.com/bid/108482 https://cert.vde.com/de-de/advisories/vde-2019-008 https://lists.apache.org/thread.html/r0066c1e862613de402fee04e81cbe00bcd64b64a2711beb9a13c3b25@3Ccommits.cassandra.apache.org3E https://lists.apache.org/thread.html/r25e25973e9577c62fd0221b4b52990851adf11cbe33036bd67d4b13d@3Ccommits.cassandra.apache.org3E https://lists.apache.org/thread.html/r37eb6579fa0bf94a72b6c978e2fee96f68a2b1b3ac1b1ce60aee86cf@3Ccommits.cassandra.apache.org3E https://lists.apache.org/thread.html/r386966780034aadee69ffd82d44555117c9339545b9ce990fe490a3e@3Ccommits.cassandra.apache.org3E https://lists.apache.org/thread.html/r80e8882c86c9c17a57396a5ef7c4f08878d629a0291243411be0de3a@3Ccommits.cassandra.apache.org3E https://lists.apache.org/thread.html/ra37700b842790883b9082e6b281fb7596f571b13078a4856cd38f2c2@3Ccommits.cassandra.apache.org3E https://lists.apache.org/thread.html/rb47911c179c9f3e8ea3f134b5645e63cd20c6fc63bd0b43ab5864bd1@3Ccommits.cassandra.apache.org3E

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

HIGH

Base Score

HIGH

Base Severity

9.8

Share on: