Back to Database
Status published
Critical
CVE-2019-12550
WAGO 852-303 before FW06, 852-1305 before FW06, and 852-1505 before...
Vulnerability Description
WAGO 852-303 before FW06, 852-1305 before FW06, and 852-1505 before FW03 devices contain hardcoded users and passwords that can be used to login via SSH and TELNET.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-12550
Credits & Attribution
No credits recorded in the NVD database.
References
More from wago
View All →CVE-2021-30195
CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation....
High
7.5
CVE-2021-30194
CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read....
Critical
9.1
CVE-2021-30193
CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write....
Critical
9.8
CVE-2021-30192
CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security...
Critical
9.8
CVE-2021-30191
CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy...
High
7.5
Affected Vendor
wago
View all reports →Affected Software
852-303 firmware, 852-1305 firmware, 852-1505 firmware
Vulnerable Versions:
0
Timeline
Official Publish:
June 17th, 2019
Last Modified:
August 4th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.