WAGO: Denial of Service vulnerability inside the OpenSSL implementation
Vulnerability Description
Missing Release of Resource after Effective Lifetime vulnerability in OpenSSL implementation of WAGO 750-831/xxx-xxx, 750-880/xxx-xxx, 750-881, 750-889 in versions FW4 up to FW15 allows an unauthenticated attacker to cause DoS on the device.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-34581
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- These vulnerabilities were reported to WAGO by: Uwe Disch. Coordination done by CERT@VDE
More from WAGO
View All →Affected Vendor
WAGO
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.