CVE Published: 24/05/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2021 Source: CERTVDE |
Vendor: WAGO |
Product: Series PFC200 Controller Status : PUBLISHED
CVE-2021-21001 Description
On WAGO PFC200 devices in different firmware versions with special crafted packets an authorised attacker with network access to the device can access the file system with higher privileges.
Metrics
CVSS Version: 3.1 |
Base Score: 9.1 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H