WAGO: Improper Privilege Management in web-based management
Vulnerability Description
Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to change the passwords of other non-admin users and thus to escalate non-root privileges.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-3379
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Panagiotis Bellonias from Secura
More from WAGO
View All →Affected Vendor
WAGO
View all reports →