← Back to CVE List

CVE-2019-5157

Published: 2020-03-11T22:27Z
Last Modified: 2024-11-21T04:44Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An exploitable command injection vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 Firmware versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). An attacker can inject OS commands into the TimeoutUnconfirmed parameter value contained in the Firmware Update command. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt