Vulnerability Description
Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW07 allows an attacker to change some special parameters without authentication. This issue affects: WAGO 750-852, WAGO 750-880/xxx-xxx, WAGO 750-881, WAGO 750-831/xxx-xxx, WAGO 750-882, WAGO 750-885/xxx-xxx, WAGO 750-889 in versions FW07 and below.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wago | 750-852 Firmware | <= fw07 |
| Wago | 750-852 | - |
| Wago | 750-880 Firmware | <= fw07 |
| Wago | 750-880 | - |
| Wago | 750-881 Firmware | <= fw07 |
| Wago | 750-881 | - |
| Wago | 750-831 Firmware | <= fw07 |
| Wago | 750-831 | - |
| Wago | 750-882 Firmware | <= fw07 |
| Wago | 750-882 | - |
| Wago | 750-885 Firmware | <= fw07 |
| Wago | 750-885 | - |
| Wago | 750-889 Firmware | <= fw07 |
| Wago | 750-889 | - |
Related Weaknesses (CWE)
References
- https://cert.vde.com/en-us/advisories/vde-2020-027Third Party Advisory
- https://cert.vde.com/en-us/advisories/vde-2020-027Third Party Advisory
FAQ
What is CVE-2020-12505?
CVE-2020-12505 is a vulnerability with a CVSS score of 8.2 (HIGH). Improper Authentication vulnerability in WAGO 750-8XX series with FW version <= FW07 allows an attacker to change some special parameters without authentication. This issue affects: WAGO 750-852, WAGO...
How severe is CVE-2020-12505?
CVE-2020-12505 has been rated HIGH with a CVSS base score of 8.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-12505?
Check the references section above for vendor advisories and patch information. Affected products include: Wago 750-852 Firmware, Wago 750-852, Wago 750-880 Firmware, Wago 750-880, Wago 750-881 Firmware.