Remote Code Execution Vulnerability in WAGO PFC 200 03.03.10(15) Web-Based Management

Remote Code Execution Vulnerability in WAGO PFC 200 03.03.10(15) Web-Based Management

CVE-2020-6090 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03.10(15). A specially crafted series of HTTP requests can cause code execution resulting in remote code execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

Learn more about our Web App Pen Testing.