CVE-2019-5107

HIGH

WAGO e!Cockpit <1.5.1.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to network traffic can easily intercept, interpret, and manipulate data coming from, or destined for e!Cockpit. This includes passwords, configurations, and binaries being transferred to endpoints.

References (1)

Core 1
Core References

Scores

CVSS v3 7.5
EPSS 0.0110
EPSS Percentile 61.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-319
Status published
Products (1)
wago/e\!cockpit 1.5.1.1
Published Mar 11, 2020
Tracked Since Feb 18, 2026