#VU23637 Information disclosure in Wago PFC200 Controller and WAGO PFC100 Controller - CVE-2019-5073
Published: December 17, 2019
Wago PFC200 Controller
WAGO PFC100 Controller
WAGO
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to improper input validation in the iocheckd service "I/O-Check" functionality. A remote attacker can send a specially crafted set of packets, cause an external tool to fail and gain unauthorized access to sensitive information on the system.