Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-6090

Опубликовано: 11 июн. 2020
Источник: nvd
CVSS3: 7.2
CVSS2: 9
EPSS Низкий

Описание

An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03.10(15). A specially crafted series of HTTP requests can cause code execution resulting in remote code execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:wago:pfc200_firmware:03.03.10\(15\):*:*:*:*:*:*:*
cpe:2.3:h:wago:pfc200:-:*:*:*:*:*:*:*

EPSS

Процентиль: 75%
0.00902
Низкий

7.2 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 7.2
github
больше 3 лет назад

An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03.10(15). A specially crafted series of HTTP requests can cause code execution resulting in remote code execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

EPSS

Процентиль: 75%
0.00902
Низкий

7.2 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-345