Remote Denial-of-Service Vulnerability in Wago 750 Series PLCs

Remote Denial-of-Service Vulnerability in Wago 750 Series PLCs

CVE-2018-8836 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:N/A:P

Wago 750 Series PLCs with firmware version 10 and prior include a remote attack may take advantage of an improper implementation of the 3 way handshake during a TCP connection affecting the communications with commission and service tools. Specially crafted packets may also be sent to Port 2455/TCP/IP, used in Codesys management software, which may result in a denial-of-service condition of communications with commissioning and service tools.

Learn more about our Web Application Penetration Testing UK.