CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.
CODESYS V2 runtime system SP versiones anteriores a 2.4.7.55, presenta un Desbordamiento del Búfer en la región stack de la memoria
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
AV:N/AC:L/Au:N/C:P/I:P/A:P
| Access Vector | NETWORK |
|---|---|
| Access Complexity | LOW |
| Authentication | NONE |
| Confidentiality Impact | PARTIAL |
| Integrity Impact | PARTIAL |
| Availability Impact | PARTIAL |
| Source | Type | Description |
|---|---|---|
| [email protected] | Primary |
en
CWE-787
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| wago | 750-893_firmware | * | <built-in method update of dict object at 0x7e60ba04df80> | Operating System |
| wago | 750-891_firmware | * | <built-in method update of dict object at 0x7e60ba04df00> | Operating System |
| wago | 750-890_firmware | * | <built-in method update of dict object at 0x7e60ba04e900> | Operating System |
| wago | 750-889_firmware | * | <built-in method update of dict object at 0x7e60ba04d3c0> | Operating System |
| wago | 750-885_firmware | * | <built-in method update of dict object at 0x7e60ba04e000> | Operating System |
| wago | 750-882_firmware | * | <built-in method update of dict object at 0x7e60ba04dfc0> | Operating System |
| wago | 750-881_firmware | * | <built-in method update of dict object at 0x7e60ba04d080> | Operating System |
| wago | 750-880_firmware | * | <built-in method update of dict object at 0x7e60bbef4680> | Operating System |
| wago | 750-862_firmware | * | <built-in method update of dict object at 0x7e60bbef52c0> | Operating System |
| wago | 750-852_firmware | * | <built-in method update of dict object at 0x7e60ba04d0c0> | Operating System |
| wago | 750-832_firmware | * | <built-in method update of dict object at 0x7e60ba04c780> | Operating System |
| wago | 750-831_firmware | * | <built-in method update of dict object at 0x7e60ba04c180> | Operating System |
| wago | 750-829_firmware | * | <built-in method update of dict object at 0x7e60ba04d700> | Operating System |
| wago | 750-8202_firmware | * | <built-in method update of dict object at 0x7e611116c840> | Operating System |
| wago | 750-8203_firmware | * | <built-in method update of dict object at 0x7e60ba04cb00> | Operating System |
| wago | 750-8204_firmware | * | <built-in method update of dict object at 0x7e60bbef62c0> | Operating System |
| wago | 750-8206_firmware | * | <built-in method update of dict object at 0x7e60ba04ce80> | Operating System |
| wago | 750-8207_firmware | * | <built-in method update of dict object at 0x7e60ba04f240> | Operating System |
| wago | 750-8208_firmware | * | <built-in method update of dict object at 0x7e611116e2c0> | Operating System |
| wago | 750-8210_firmware | * | <built-in method update of dict object at 0x7e60ba04d2c0> | Operating System |
| wago | 750-8211_firmware | * | <built-in method update of dict object at 0x7e60ba04e080> | Operating System |
| wago | 750-8212_firmware | * | <built-in method update of dict object at 0x7e60ba04d840> | Operating System |
| wago | 750-8213_firmware | * | <built-in method update of dict object at 0x7e60bbef6040> | Operating System |
| wago | 750-8214_firmware | * | <built-in method update of dict object at 0x7e60ba04dd40> | Operating System |
| wago | 750-8216_firmware | * | <built-in method update of dict object at 0x7e60bbef4980> | Operating System |
| wago | 750-8217_firmware | * | <built-in method update of dict object at 0x7e60ba04cd00> | Operating System |
| codesys | v2_runtime_system_sp | * | <built-in method update of dict object at 0x7e60ba04c300> | Application |
| wago | 750-823_firmware | * | <built-in method update of dict object at 0x7e60b9fb7140> | Operating System |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-893_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-893:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-891_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-891:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-890_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-890:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-889_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-889:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-885_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-885:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-882_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-882:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-881_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-881:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-880_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-880:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-862_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-862:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-852_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-852:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-832_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-832:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-831_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-831:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-829_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-829:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8202_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8202:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8203_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8203:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8204_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8204:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8206_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8206:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8207_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8207:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8208_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8208:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8210_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8210:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8211_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8211:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8212_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8212:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8213_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8213:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8214_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8214:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8216_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8216:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-8217_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-8217:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:codesys:v2_runtime_system_sp:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:wago:750-823_firmware:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:wago:750-823:-:*:*:*:*:*:*:* |