CVE-2021-34584

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/10/2021
Last modified:
15/08/2025

Description

Crafted web server requests can be utilised to read partial stack or heap memory or may trigger a denial-of- service condition due to a crash in the CODESYS V2 web server prior to V1.1.9.22.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:wago:750-823_firmware:*:*:*:*:*:*:*:* fw10 (excluding)
cpe:2.3:h:wago:750-823:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-829_firmware:*:*:*:*:*:*:*:* fw17 (excluding)
cpe:2.3:h:wago:750-829:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-831_firmware:*:*:*:*:*:*:*:* fw17 (excluding)
cpe:2.3:h:wago:750-831:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-832_firmware:*:*:*:*:*:*:*:* fw10 (excluding)
cpe:2.3:h:wago:750-832:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-852_firmware:*:*:*:*:*:*:*:* fw17 (excluding)
cpe:2.3:h:wago:750-852:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-862_firmware:*:*:*:*:*:*:*:* fw10 (excluding)
cpe:2.3:h:wago:750-862:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-880_firmware:*:*:*:*:*:*:*:* fw17 (excluding)
cpe:2.3:h:wago:750-880:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-881_firmware:*:*:*:*:*:*:*:* fw17 (excluding)