WAGO System I/O Field Devices Early-Boot Diagnostic Exposure Allowing Full System Compromise

Vulnerability

A vulnerability exists in certain WAGO System I/O Field devices that allows unauthenticated remote access to internal system processes during a brief window in the early startup phase. This access, which is not documented and available only for a short time, can lead to a full system compromise by exploiting the internal diagnostic capabilities activated at startup.

Impact

Exploitation of this vulnerability could result in a complete compromise of the affected system.

Remediation

Users are advised to update to the latest firmware versions. The specific fixed versions can be found in the WAGO advisory VDE-2026-031.

Added: Jul 13, 2026, 8:23 AM
Updated: Jul 13, 2026, 8:23 AM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
7.5
exploitability
5.9
remediation
7.7
relevance
9.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.