The MMS Interpreter of WagoAppRTU in versions below 1.4.6.0 which is used by the WAGO Telecontrol Configurator is vulnerable to malformed packets. An remote unauthenticated attacker could send specifically crafted packets that lead to a denial-of-service condition until restart of the affected device.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-044/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
11 Dec 2023, 15:32
Type | Values Removed | Values Added |
---|---|---|
First Time |
Wago
Wago telecontrol Configurator Wago wagoapprtu |
|
References | () https://cert.vde.com/en/advisories/VDE-2023-044/ - Third Party Advisory | |
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:a:wago:wagoapprtu:*:*:*:*:*:*:*:* cpe:2.3:a:wago:telecontrol_configurator:*:*:*:*:*:*:*:* |
05 Dec 2023, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-05 08:15
Updated : 2024-02-28 20:54
NVD link : CVE-2023-5188
Mitre link : CVE-2023-5188
CVE.ORG link : CVE-2023-5188
JSON object : View
Products Affected
wago
- wagoapprtu
- telecontrol_configurator
CWE