VYPR
High severity7.5NVD Advisory· Published Mar 11, 2020· Updated Jun 17, 2026

CVE-2019-5134

CVE-2019-5134

Description

An exploitable regular expression without anchors vulnerability exists in the Web-Based Management (WBM) authentication functionality of WAGO PFC200 versions 03.00.39(12) and 03.01.07(13), and WAGO PFC100 version 03.00.39(12). A specially crafted authentication request can bypass regular expression filters, resulting in sensitive information disclosure.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Wago/PFC200llm-fuzzy
    Range: 03.00.39(12), 03.01.07(13)
  • Wago/PFC100llm-fuzzy
    Range: 03.00.39(12)
  • Wago/Pfc200 Firmwarecpe-rescue3 versions
    version 03.00.39(12)+ 2 more
    • (no CPE)range: version 03.00.39(12)
    • cpe:2.3:o:wago:pfc200_firmware:03.00.39\(12\):*:*:*:*:*:*:*
    • cpe:2.3:o:wago:pfc200_firmware:03.01.07\(13\):*:*:*:*:*:*:*
  • Wago/Pfc100 Firmwarecpe-rescue2 versions
    version 03.00.39(12)+ 1 more
    • (no CPE)range: version 03.00.39(12)
    • cpe:2.3:o:wago:pfc100_firmware:03.00.39\(12\):*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.