Hidden CLI Function Allows Root Access
Published Mar 23, 2026
10.0
CRITICALCVSS 3.1
EPSS 0.65%
Description
An unauthenticated remote attacker can exploit a hidden function in the CLI prompt to escape the restricted interface, leading to full compromise of the device.
Affected products
-
Affected
- ≥ 0.0.0, < V1.2.0.S0
-
Affected
- ≥ 0.0.0, < V1.2.0.S0
-
Affected
- ≥ 0.0.0, < V1.1.9.S0
-
Affected
- ≥ 0.0.0, < V1.2.0.S0
-
Affected
- ≥ 0.0.0, < V1.2.5.S0
-
Affected
- ≥ 0.0.0, < V1.2.8.S0
-
Affected
- ≥ 0.0.0, < V1.0.6.S0
-
Affected
- ≥ 0.0.0, < V1.0.6.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
-
Affected
- ≥ 0.0.0, < V1.2.3.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
-
Affected
- ≥ 0.0.0, < V1.2.1.S0
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| WAGO | Industrial Managed Switch 852-1305 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-1305-000-001 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-1505 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-1505-000-001 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-1605 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-303 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-602 | unaffected | Affected
|
| WAGO | Industrial Managed Switch 852-603 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1812 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1812-010-000 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1813 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1813-000-001 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1813-010-000 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1813/010-001 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1816 | unaffected | Affected
|
| WAGO | Lean Managed Switch 852-1816-010-000 | unaffected | Affected
|
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (2)
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data