CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Wago 7751 9301 Firmware 752 8303/8000 002 FirmwarePfc100 Firmware+4 moreJun 17, 2026 Feb 27, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 The configuration backend allows an unauthenticated user to write arbitrary data with root privileges to the storage, which could lead to unauthenticated remote code execution and full system compromise. |
1Wago 7751 9301 Firmware 752 8303/8000 002 FirmwarePfc100 Firmware+4 moreJun 17, 2026 Feb 27, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A CORS Misconfiguration in the web-based management allows a malicious third party webserver to misuse all basic information pages on the webserver. In combination with CVE-2022-45138 this could lead to disclosure of dev...Show more |
1Wago 7751 9301 Firmware 752 8303/8000 002 FirmwarePfc100 Firmware+4 moreJun 17, 2026 Feb 27, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 The configuration backend of the web-based management can be used by unauthenticated users, although only authenticated users should be able to use the API. The vulnerability allows an unauthenticated attacker to read an...Show more |
1Wago 7751 9301 Firmware 752 8303/8000 002 FirmwarePfc100 Firmware+4 moreJun 17, 2026 Feb 27, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The configuration backend of the web-based management is vulnerable to reflected XSS (Cross-Site Scripting) attacks that targets the users browser. This leads to a limited impact of confidentiality and integrity but no i...Show more |
1Wago 78750 8100 Firmware 750 8101/000 010 Firmware750 8101/025 000 Firmware+75 moreJun 17, 2026 Oct 17, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 WAGO Series PFC100/PFC200, Series Touch Panel 600, Compact Controller CC100 and Edge Controller in multiple versions are prone to a loss of MAC-Address-Filtering after reboot. This may allow an remote attacker to circumv...Show more |
1Wago 25750 8100 Firmware 750 8101/025 000 Firmware750 8101 Firmware+22 moreJun 17, 2026 Mar 9, 2022 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attacker with user privileges may use this to gain access to confidential information on a PC that c...Show more |