Aqua Vulnerability Database
Get Demo
Vulnerabilities
Misconfiguration
Runtime Security
Compliance
CVE Vulnerabilities
CVE-2015-6473
Published:
Aug 22, 2017
| Modified:
Jul 09, 2021
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
Additional information
NVD
https://nvd.nist.gov/vuln/detail/CVE-2015-6473
CWE
https://cwe.mitre.org/data/definitions/254.html
WAGO IO 750-849 01.01.27 and WAGO IO 750-881 01.02.05 do not contain privilege separation.
Affected Software
Name
Vendor
Start Version
End Version
750-849_firmware
Wago
01.01.27 (including)
01.01.27 (including)
References
http://packetstormsecurity.com/files/136077/WAGO-IO-PLC-758-870-750-849-Credential-Management-Privilege-Separation.html
http://seclists.org/fulldisclosure/2016/Mar/4
http://www.securityfocus.com/bid/84138
Aqua Container Security