PFC200 Firmware
40 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for PFC200 Firmware, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
PFC200 Firmware CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 40 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical8
- High23
- Medium8
- Low1
Latest CVEs
The 15 most recently published vulnerabilities affecting PFC200 Firmware.
- CVE-2023-3379WAGO: Improper Privilege Management in web-based management5.3
- CVE-2023-4089WAGO: Multiple products vulnerable to local file inclusion2.7
- CVE-2023-1698WAGO: WBM Command Injection in multiple products9.8
- CVE-2022-45140WAGO: Missing Authentication for Critical Function 9.8
- CVE-2022-45139WAGO: Origin validation error through CORS misconfiguration5.3
- CVE-2022-45138WAGO: Missing Authentication for Critical Function9.8
- CVE-2022-45137WAGO: Reflective Cross-Site Scripting6.1
- CVE-2022-3738WAGO: Missing authentication for config export functionality in multiple products5.9
- CVE-2020-6090An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03.10(15). A specially crafted series of HTTP requests can cause code execution...7.2
- CVE-2019-5185An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. An attacker can send a specially crafted packet to trigger...7.0
- CVE-2019-5184An exploitable double free vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. A specially crafted XML cache file written to a specific location on the device ca...7.8
- CVE-2019-5186An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. An attacker can send a specially crafted packet to trigger...7.0
- CVE-2019-5181An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 Firmware version 03.02.02(14). A specially crafted XML ...7.8
- CVE-2019-5180An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 Firmware version 03.02.02(14). An attacker can send a s...7.8
- CVE-2019-5179An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 Firmware version 03.02.02(14). An attacker can send a s...7.8
Product grouping is registry-driven, with AI assist and human review. How it works