<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_wagogmbhcokg/10</id>
  <title>Most recent entries from csaf_wagogmbhcokg</title>
  <updated>2026-10-09T20:12:37.122668+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2019-013</id>
    <title>VDE-2019-013 — WAGO: Multiple Vulnerabilities in industrial managed switches</title>
    <updated>2019-06-12T10:25:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been identified in WAGO 852-303, 852-1305 and 852-1505 industrial managed ethernet switches.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2019-013"/>
    <published>2019-06-12T10:25:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2019-022</id>
    <title>VDE-2019-022 — WAGO: Multiple Vulnerabilities in I/O-Check Service in Multiple Devices</title>
    <updated>2019-12-16T09:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>The reported vulnerabilities allow a remote attacker to change the setting, delete the application, set the device to factory defaults, code execution and to cause a system crash or denial of service.</p>
<p>Note(s)</p>
<p>The following products are affected by the listed vulnerabilities:</p>
<p>Series PFC100 (750-81xx/xxx-xxx)
Series PFC200 (750-82xx/xxx-xxx)</p>
<p>The following products are affected by the vulnerability CVE-2019-5078</p>
<p>750-852, 750-831/xxx-xxx, 750-881, 750-880/xxx-xxx, 750-889</p>
<p>750-823, 750-832/xxx-xxx, 750-862, 750-890/xxx-xxx, 750-891</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2019-022"/>
    <published>2019-12-16T09:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2020-007</id>
    <title>VDE-2020-007 — WAGO: Web-Based Management Denial of Service</title>
    <updated>2020-03-09T09:10:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Web-Based Management (WBM) of WAGOs programmable logic controller (PLC) is typically used for commissioning and update. The controller is an embedded device which has limited resources. The vulnerability described here takes advantage of this fact.With special crafted requests it is possible to have a denial of service of the WBM.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2020-007"/>
    <published>2020-03-09T09:10:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2020-010</id>
    <title>VDE-2020-010 — WAGO: Cloud Connectivity Remote Code Execution Vulnerability</title>
    <updated>2020-03-09T09:25:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker needs an authorized login with administrative privileges on the device in order to exploit the herein mentioned vulnerability.
The weakness allows an attacker which has admin privileges on the device to redirect to his own Azure cloud account and install malicious software with the firmware update functionality.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2020-010"/>
    <published>2020-03-09T09:25:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2020-015</id>
    <title>VDE-2020-015 — WAGO: Web Based Management - Code Execution Vulnerability</title>
    <updated>2020-06-10T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>The Web-Based Management (WBM) of WAGOs programmable logic controller (PLC) is typically used for administration, commissioning and updates.</p>
<p>An attacker needs an authorized login with administrative privileges on the device in order to exploit the herein mentioned vulnerability.</p>
<p>An authenticated attacker who has access to the Web Based Management (WBM) could use the software upload functionality to install software package with root privileges. This fact could be potentially used to manipulate the device or to get control of the device.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2020-015"/>
    <published>2020-06-10T08:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2020-048</id>
    <title>VDE-2020-048 — M&amp;M Software (WAGO): Deserialisation of untrusted data in fdtContainer</title>
    <updated>2021-01-14T14:57:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>The fdtCONTAINER component is integrated into an application (host application). The fdtCONTAINER application is a specific host application which integrates the fdtCONTAINER component.</p>
<p>The fdtCONTAINER component exchanges binary data blobs with such a host application. Typically, the host application saves these binary data blobs into a project storage (project file or a project database).</p>
<p>To manipulate the data inside the project storage, the attacker needs write access to this project storage. Additionally, the manipulated project needs to be opened by the host application. It depends on the host application whether opening the project requires a user action or not. In
fdtCONTAINER applications, the user has to open the manipulated project file manually.</p>
<p>In the case of opening a stored project, the deserialization of the manipulated data can be exploited.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2020-048"/>
    <published>2021-01-14T14:57:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-050</id>
    <title>VDE-2021-050 — WAGO: Multiple devices affected by Vulnerabilities in NUCLEUS TCP Stack.</title>
    <updated>2021-11-16T11:02:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities were reported in the Nucleus Real-Time Operating System (RTOS). The Nucleus RTOS is an essential component in several WAGO PLCs and fieldbus coupler. WAGO uses older Versions of the Nucleus RTOS also in legacy products.
For additional information please consult the official Siemens advisory:
• Advisory SSA-044112</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-050"/>
    <published>2021-11-16T11:02:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-004</id>
    <title>VDE-2022-004 — WAGO: Web-Based Management Cross-Site Scripting</title>
    <updated>2022-03-09T07:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Web-Based Management (WBM) of WAGOs programmable logic controller (PLC) is typically used for administration, commissioning and updates.Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-004"/>
    <published>2022-03-09T07:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-031</id>
    <title>VDE-2022-031 — WAGO: Multiple Products Series affected by multiple CODESYS vulnerabilities</title>
    <updated>2022-08-17T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple WAGO product families are prone to multiple vulnerabilities affecting CODESYS control runtime system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-031"/>
    <published>2022-08-17T08:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-035</id>
    <title>VDE-2022-035 — WAGO: Multiple product series affected by multiple CODESYS vulnerabilities</title>
    <updated>2022-08-17T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple WAGO product families are prone to multiple vulnerabilities affecting CODESYS control runtime system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-035"/>
    <published>2022-08-17T08:00:00+00:00</published>
  </entry>
</feed>
