Known Vulnerabilities for 752-8303/8000-002 Firmware by Wago
Listed below are 10 of the newest known vulnerabilities associated with "752-8303/8000-002 Firmware" by "Wago".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-45140 | The configuration backend allows an unauthenticated user to write arbitrary data with root privileges to the storage, which c... | 9.8 - CRITICAL | 2023-02-27 | 2023-03-07 |
| CVE-2022-45139 | A CORS Misconfiguration in the web-based management allows a malicious third party webserver to misuse all basic information ... | 5.3 - MEDIUM | 2023-02-27 | 2023-03-07 |
| CVE-2022-45138 | The configuration backend of the web-based management can be used by unauthenticated users, although only authenticated users... | 9.8 - CRITICAL | 2023-02-27 | 2023-03-07 |
| CVE-2022-45137 | The configuration backend of the web-based management is vulnerable to reflected XSS (Cross-Site Scripting) attacks that targ... | 6.1 - MEDIUM | 2023-02-27 | 2023-03-08 |
| CVE-2022-22511 | Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attac... | 5.4 - MEDIUM | 2022-03-09 | 2022-03-18 |
| CVE-2022-3281 | WAGO Series PFC100/PFC200, Series Touch Panel 600, Compact Controller CC100 and Edge Controller in multiple versions are pron... | 7.5 - HIGH | 2022-10-17 | 2022-11-04 |
| CVE-2021-34569 | In WAGO I/O-Check Service in multiple products an attacker can send a specially crafted packet containing OS commands to cras... | 9.8 - CRITICAL | 2022-11-09 | 2023-11-07 |
| CVE-2021-34568 | In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet contain... | 7.5 - HIGH | 2022-11-09 | 2023-11-07 |
| CVE-2021-34567 | In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet contain... | 8.2 - HIGH | 2022-11-09 | 2023-11-07 |
| CVE-2021-34566 | In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet contain... | 9.1 - CRITICAL | 2022-11-09 | 2023-11-07 |