Medium severity5.3NVD Advisory· Published Nov 20, 2023· Updated Jun 17, 2026
CVE-2023-3379
CVE-2023-3379
Description
Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to change the passwords of other non-admin users and thus to escalate non-root privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
22- cpe:2.3:o:wago:compact_controller_100_firmware:*:*:*:*:*:*:*:*Range: <=25
cpe:2.3:o:wago:pfc100_firmware:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:wago:pfc100_firmware:*:*:*:*:*:*:*:*range: <22
- cpe:2.3:o:wago:pfc100_firmware:22:-:*:*:*:*:*:*
- cpe:2.3:o:wago:pfc100_firmware:22:patch_1:*:*:*:*:*:*
cpe:2.3:o:wago:pfc200_firmware:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:wago:pfc200_firmware:*:*:*:*:*:*:*:*range: <22
- cpe:2.3:o:wago:pfc200_firmware:22:-:*:*:*:*:*:*
- cpe:2.3:o:wago:pfc200_firmware:22:patch_1:*:*:*:*:*:*
- cpe:2.3:o:wago:pfc200_firmware:23:*:*:*:*:*:*:*
- cpe:2.3:o:wago:pfc200_firmware:24:*:*:*:*:*:*:*
- cpe:2.3:o:wago:touch_panel_600_advanced_firmware:*:*:*:*:*:*:*:*Range: <=25
- cpe:2.3:o:wago:touch_panel_600_marine_firmware:*:*:*:*:*:*:*:*Range: <=25
- cpe:2.3:o:wago:touch_panel_600_standard_firmware:*:*:*:*:*:*:*:*Range: <=25
- Range: 0
- Wago/Edge Controller (752-8303/8000-002)v5Range: 0
- WAGO/PFC100 (750-810x/xxx-xxx)v5Range: 0
0+ 1 more
- (no CPE)range: 0
- (no CPE)range: 0
- WAGO/Touch Panel 600 Advanced Line (762-5xxx)v5Range: 0
- WAGO/Touch Panel 600 Marine Line (762-6xxx)v5Range: 0
- Range: 0
Patches
Vulnerability mechanics
References
1- cert.vde.com/en/advisories/VDE-2023-015/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.