In multiple products of WAGO a vulnerability allows an unauthenticated, remote attacker to create new users and change the device configuration which can result in unintended behaviour, Denial of Service and full system compromise.
2023-05-15T09:15:09.510
2024-11-21T07:39:43.320
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | wago | compact_controller_100_firmware | ≤ 23 | Yes |
Hardware | wago | compact_controller_100 | - | No |
Operating System | wago | edge_controller_firmware | 22 | Yes |
Hardware | wago | edge_controller | - | No |
Operating System | wago | pfc100_firmware | ≤ 23 | Yes |
Hardware | wago | pfc100 | - | No |
Operating System | wago | pfc200_firmware | ≤ 23 | Yes |
Hardware | wago | pfc200 | - | No |
Operating System | wago | touch_panel_600_advanced_firmware | 22 | Yes |
Hardware | wago | touch_panel_600_advanced | - | No |
Operating System | wago | touch_panel_600_marine_firmware | 22 | Yes |
Hardware | wago | touch_panel_600_marine | - | No |
Operating System | wago | touch_panel_600_standard_firmware | 22 | Yes |
Hardware | wago | touch_panel_600_standard | - | No |