Wago: Vulnerability in Smart Designer Web-Application
Vulnerability Description
In Wago Smart Designer in versions up to 2.33.1 a low privileged remote attacker may enumerate projects and usernames through iterative requests to an specific endpoint.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-5872
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Brett Dewall from White Oak Security
References
More from Wago
View All →Affected Vendor
Wago
View all reports →