CVE-2019-12550: Wago 852-1305 Firmware
Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.
WAGO 852-303 before FW06, 852-1305 before FW06, and 852-1505 before FW03 devices contain hardcoded users and passwords that can be used to login via SSH and TELNET.
Affected products
- Wago 852-1305 Firmware: before 1.1.6.s0 (fixed in 1.1.6.s0)
- Wago 852-1505 Firmware: before 1.1.5.s0 (fixed in 1.1.5.s0)
- Wago 852-303 Firmware: before 1.2.2.s0 (fixed in 1.2.2.s0)
Published 2019-06-17. Last modified 2026-06-17.