QID 590458
Date Published: 2021-10-14
QID 590458: WAGO e!DISPLAY Web-Based-Management Multiple Vulnerabilities (ICSA-18-198-02)
AFFECTED PRODUCTS
The following versions of WAGO e!DISPLAY, an HMI, running firmware FW 01 are affected:
762-3000,
762-3001,
762-3002, and
762-3003
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Successful exploitation of these vulnerabilities could allow an attacker to execute code in the context of the user, execute code within the users browser, place malicious files within the filesystem, and replace existing files to allow privilege escalation.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-18-198-02 for affected packages and patching details.
Vendor References
- ICSA-18-198-02 -
www.us-cert.gov/ics/advisories/ICSA-18-198-02
CVEs related to QID 590458
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-18-198-02 |
|