CVE-2019-5161
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.5%
exploitation probability
2.5%top 17% of all CVEs
observed exploitation
nono source reports it
An exploitable remote code execution vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). A specially crafted XML file will direct the Cloud Connectivity service to download and execute a shell script with root privileges.
Affected products
Wago · WAGO PFC200 Firmware