<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:25:00 +0000</lastBuildDate>
    <item>
      <title>cnvd-2019-46397</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2019-46397</link>
      <description>cnvd-2019-46397</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2019-46397</guid>
    </item>
    <item>
      <title>EUVD-2026-49937</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-49937</link>
      <description>EUVD-2026-49937</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-49937</guid>
    </item>
    <item>
      <title>fkie_cve-2019-5073</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-5073</link>
      <description>&lt;p&gt;An exploitable information exposure vulnerability exists in the iocheckd service &amp;#34;I/O-Check&amp;#34; functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause an external tool to fail, resulting in uninitialized stack data to be copied to the response packet buffer. An attacker can send unauthenticated packets to trigger this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An exploitable information exposure vulnerability exists in the iocheckd service &amp;#34;I/O-Check&amp;#34; functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause an external tool to fail, resulting in uninitialized stack data to be copied to the response packet buffer. An attacker can send unauthenticated packets to trigger this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-5073</guid>
    </item>
    <item>
      <title>GHSA-6853-r3p7-f8fv</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6853-r3p7-f8fv</link>
      <description>&lt;p&gt;An exploitable information exposure vulnerability exists in the iocheckd service &amp;#34;I/O-Check&amp;#34; functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause an external tool to fail, resulting in uninitialized stack data to be copied to the response packet buffer. An attacker can send unauthenticated packets to trigger this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An exploitable information exposure vulnerability exists in the iocheckd service &amp;#34;I/O-Check&amp;#34; functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware version 03.00.39(12). A specially crafted set of packets can cause an external tool to fail, resulting in uninitialized stack data to be copied to the response packet buffer. An attacker can send unauthenticated packets to trigger this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6853-r3p7-f8fv</guid>
    </item>
    <item>
      <title>gsd-2019-5073</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-5073</link>
      <description>gsd-2019-5073</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-5073</guid>
    </item>
    <item>
      <title>ICSA-20-065-01 — WAGO I/O-CHECK</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-20-065-01</link>
      <description>&lt;p&gt;A specially crafted packet could cause the server to send back packets containing data from the stack.CVE-2019-5073 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). The affected products are vulnerable to a buffer overflow condition due to the lack of input validation, which may allow remote execution of arbitrary code.CVE-2019-5074 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). The affected products are vulnerable to a buffer overflow condition due to the lack of input validation, which may allow remote execution of arbitrary code.CVE-2019-5075 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). An attacker can send an unauthenticated packet that will overwrite the MAC address stored persistently on the device. This can cause the device to enter an error state where it ceases all network communications.CVE-2019-5077 has been assigned to this vulnerability. A CVSS v3 base score of 10.0 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H). An attacker can send an unauthenticated packet that will erase system data on the device. This may cause the device to enter an error state where it ceases all network communications.CVE-2019-5078…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A specially crafted packet could cause the server to send back packets containing data from the stack.CVE-2019-5073 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). The affected products are vulnerable to a buffer overflow condition due to the lack of input validation, which may allow remote execution of arbitrary code.CVE-2019-5074 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). The affected products are vulnerable to a buffer overflow condition due to the lack of input validation, which may allow remote execution of arbitrary code.CVE-2019-5075 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). An attacker can send an unauthenticated packet that will overwrite the MAC address stored persistently on the device. This can cause the device to enter an error state where it ceases all network communications.CVE-2019-5077 has been assigned to this vulnerability. A CVSS v3 base score of 10.0 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H). An attacker can send an unauthenticated packet that will erase system data on the device. This may cause the device to enter an error state where it ceases all network communications.CVE-2019-5078…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-20-065-01</guid>
    </item>
    <item>
      <title>VDE-2019-022 — WAGO: Multiple Vulnerabilities in I/O-Check Service in Multiple Devices</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2019-022</link>
      <description>&lt;p&gt;The reported vulnerabilities allow a remote attacker to change the setting, delete the application, set the device to factory defaults, code execution and to cause a system crash or denial of service.&lt;/p&gt;
&lt;p&gt;Note(s)&lt;/p&gt;
&lt;p&gt;The following products are affected by the listed vulnerabilities:&lt;/p&gt;
&lt;p&gt;Series PFC100 (750-81xx/xxx-xxx)
Series PFC200 (750-82xx/xxx-xxx)&lt;/p&gt;
&lt;p&gt;The following products are affected by the vulnerability CVE-2019-5078&lt;/p&gt;
&lt;p&gt;750-852, 750-831/xxx-xxx, 750-881, 750-880/xxx-xxx, 750-889&lt;/p&gt;
&lt;p&gt;750-823, 750-832/xxx-xxx, 750-862, 750-890/xxx-xxx, 750-891&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The reported vulnerabilities allow a remote attacker to change the setting, delete the application, set the device to factory defaults, code execution and to cause a system crash or denial of service.&lt;/p&gt;
&lt;p&gt;Note(s)&lt;/p&gt;
&lt;p&gt;The following products are affected by the listed vulnerabilities:&lt;/p&gt;
&lt;p&gt;Series PFC100 (750-81xx/xxx-xxx)
Series PFC200 (750-82xx/xxx-xxx)&lt;/p&gt;
&lt;p&gt;The following products are affected by the vulnerability CVE-2019-5078&lt;/p&gt;
&lt;p&gt;750-852, 750-831/xxx-xxx, 750-881, 750-880/xxx-xxx, 750-889&lt;/p&gt;
&lt;p&gt;750-823, 750-832/xxx-xxx, 750-862, 750-890/xxx-xxx, 750-891&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2019-022</guid>
    </item>
  </channel>
</rss>
