Wago web-based management
by Wago
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-20997 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2021 | In multiple managed switches by WAGO in different versions it is possible to read out the password hashes of all Web-based Management users. | ||
| CVE-2023-3379 | Med | 0.34 | 5.3 | 0.00 | Nov 20, 2023 | Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to change the passwords of other non-admin users and thus to escalate non-root privileges. |
- risk 0.49cvss 7.5epss 0.01
In multiple managed switches by WAGO in different versions it is possible to read out the password hashes of all Web-based Management users.
- risk 0.34cvss 5.3epss 0.00
Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to change the passwords of other non-admin users and thus to escalate non-root privileges.