Back

CRITICAL

WAGO: OS Command Injection Vulnerability in Managed Switch

Published Nov 21, 2023

Description

A vulnerability in the web-based management allows an unauthenticated remote attacker to inject arbitrary system commands and gain full system control. Those commands are executed with root privileges. The vulnerability is located in the user request handling of the web-based management.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner CERTVDE
Published Nov 21, 2023
Updated Aug 2, 2024
Reserved Aug 4, 2023
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner CERTVDE
Published Nov 21, 2023
Updated Aug 2, 2024
Exploited since n/a
EUVD-2023-54029