Known Vulnerabilities for Wha-gw-f2d2-0-as-z2-eth by Pepperl-fuchs
Listed below are 8 of the newest known vulnerabilities associated with "Wha-gw-f2d2-0-as-z2-eth" by "Pepperl-fuchs".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-34565 json | In PEPPERL+FUCHS WirelessHART-Gateway 3.0.7 to 3.0.9 the SSH and telnet services are active with hard-coded credentials. | 9.8 - CRITICAL | 2021-08-31 | 2022-09-29 |
| CVE-2021-34564 json | Any cookie-stealing vulnerabilities within the application or browser would enable an attacker to steal the user's credential... | 5.5 - MEDIUM | 2021-08-31 | 2021-09-09 |
| CVE-2021-34563 json | In PEPPERL+FUCHS WirelessHART-Gateway 3.0.8 and 3.0.9 the HttpOnly attribute is not set on a cookie. This allows the cookie's... | 3.3 - LOW | 2021-08-31 | 2022-09-29 |
| CVE-2021-34562 json | In PEPPERL+FUCHS WirelessHART-Gateway 3.0.8 it is possible to inject arbitrary JavaScript into the application's response. | 6.1 - MEDIUM | 2021-08-31 | 2022-09-29 |
| CVE-2021-34561 json | In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.8 serious issue exists, if the application is not externally accessible or uses ... | 8.8 - HIGH | 2021-08-31 | 2022-09-29 |
| CVE-2021-34560 json | In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.9 a form contains a password field with autocomplete enabled. The stored credent... | 5.5 - MEDIUM | 2021-08-31 | 2022-09-29 |
| CVE-2021-34559 json | In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.8 a vulnerability may allow remote attackers to rewrite links and URLs in cached... | 5.3 - MEDIUM | 2021-08-31 | 2022-09-29 |
| CVE-2021-33555 json | In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.7 the filename parameter is vulnerable to unauthenticated path traversal attacks... | 7.5 - HIGH | 2021-08-31 | 2021-09-08 |