VYPR

Wago web-based management

by Wago

CVEs (2)

  • CVE-2021-20997HigMay 13, 2021
    risk 0.49cvss 7.5epss 0.01

    In multiple managed switches by WAGO in different versions it is possible to read out the password hashes of all Web-based Management users.

  • CVE-2023-3379MedNov 20, 2023
    risk 0.34cvss 5.3epss 0.00

    Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to change the passwords of other non-admin users and thus to escalate non-root privileges.