CVE-2021-21000

On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with network access to the device could cause a denial of service for the login service of the runtime.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wago:750-823_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-823:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:wago:750-829_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-829:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:wago:750-831_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-831:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:wago:750-832_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-832:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:wago:750-852_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-852:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:wago:750-862_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-862:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:wago:750-880_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-880:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:wago:750-881_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-881:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:wago:750-882_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-882:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:wago:750-885_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-885:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:wago:750-889_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-889:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:wago:750-890_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-890:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:wago:750-891_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-891:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:wago:750-893_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-893:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:wago:750-8202_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:wago:750-8203_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8203:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:wago:750-8204_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8204:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:wago:750-8206_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8206:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:wago:750-8207_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8207:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:wago:750-8208_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8208:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:wago:750-8210_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8210:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:wago:750-8211_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8211:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:wago:750-8212_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8212:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:wago:750-8213_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8213:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:wago:750-8214_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8214:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:wago:750-8216_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8216:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:wago:750-8217_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8217:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:47

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 7.5
v2 : 5.0
v3 : 5.3
References () https://cert.vde.com/en-us/advisories/vde-2021-014 - Third Party Advisory () https://cert.vde.com/en-us/advisories/vde-2021-014 - Third Party Advisory

Information

Published : 2021-05-24 11:15

Updated : 2024-11-21 05:47


NVD link : CVE-2021-21000

Mitre link : CVE-2021-21000

CVE.ORG link : CVE-2021-21000


JSON object : View

Products Affected

wago

  • 750-823_firmware
  • 750-885_firmware
  • 750-8214
  • 750-8212_firmware
  • 750-893_firmware
  • 750-8204_firmware
  • 750-852_firmware
  • 750-880_firmware
  • 750-8203
  • 750-889
  • 750-8213_firmware
  • 750-882
  • 750-8208
  • 750-8216_firmware
  • 750-889_firmware
  • 750-885
  • 750-8217_firmware
  • 750-823
  • 750-831_firmware
  • 750-8212
  • 750-8211_firmware
  • 750-862_firmware
  • 750-831
  • 750-881
  • 750-8213
  • 750-8203_firmware
  • 750-8207_firmware
  • 750-829_firmware
  • 750-832_firmware
  • 750-8208_firmware
  • 750-8211
  • 750-8214_firmware
  • 750-8217
  • 750-8204
  • 750-8216
  • 750-829
  • 750-891_firmware
  • 750-882_firmware
  • 750-8202
  • 750-862
  • 750-891
  • 750-881_firmware
  • 750-893
  • 750-890_firmware
  • 750-8210
  • 750-880
  • 750-8206_firmware
  • 750-890
  • 750-8206
  • 750-832
  • 750-8210_firmware
  • 750-8202_firmware
  • 750-8207
  • 750-852
CWE
CWE-770

Allocation of Resources Without Limits or Throttling