ZeroHour

CVE-2020-6090

CVSS 3.1
7.2 high
EPSS
2%p80
Published
()
Modified
Description

An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03.10(15). A specially crafted series of HTTP requests can cause code execution resulting in remote code execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

Vendors
wago
Products
pfc200 firmware
Weakness
CWE-345
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.