CVE-2018-5459
An Improper Authentication issue was discovered in WAGO PFC200 Series 3S CoDeSys Runtime versions 2.3.X and 2.4.X. An attacker can execute different unauthenticated remote operations because of the CoDeSys Runtime application, which is available via network by default on Port 2455. An attacker could execute some unauthenticated commands such as reading, writing, or deleting arbitrary files, or manipulate the PLC application during runtime by sending specially-crafted TCP packets to Port 2455.
Published:Feb 13, 2018
Last Modified:Nov 21, 2024
EPS:Feb 13, 2018
EPSS Score:0.00907
CVSS Score:9.8
Affected Products
Vendor
Product
Action
Vendor
Wago
Product
750-8202
Wago
750-8202
Vendor
Wago
Product
750-8202\/025-000
Wago
750-8202\/025-000
Vendor
Wago
Product
750-8202\/025-001
Wago
750-8202\/025-001
Vendor
Wago
Product
750-8202\/025-002
Wago
750-8202\/025-002
Vendor
Wago
Product
750-8202\/040-001
Wago
750-8202\/040-001
Vendor
Wago
Product
750-8203
Wago
750-8203
Vendor
Wago
Product
750-8203\/025-000
Wago
750-8203\/025-000
Vendor
Wago
Product
750-8204
Wago
750-8204
Vendor
Wago
Product
750-8204\/025-000
Wago
750-8204\/025-000
Vendor
Wago
Product
750-8206
Wago
750-8206
Vendor
Wago
Product
750-8206\/025-000
Wago
750-8206\/025-000
Vendor
Wago
Product
750-8206\/025-001
Wago
750-8206\/025-001
Vendor
Wago
Product
750-8207
Wago
750-8207
Vendor
Wago
Product
750-8207\/025-000
Wago
750-8207\/025-000
Vendor
Wago
Product
750-8207\/025-001
Wago
750-8207\/025-001
Vendor
Wago
Product
750-8208
Wago
750-8208
Vendor
Wago
Product
750-8208\/025-000
Wago
750-8208\/025-000
Vendor
Wago
Product
Pfc200
Wago
Pfc200
Vendor
Wago
Product
Pfc200 Firmware
Wago
Pfc200 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
