CVE-2022-3738
19.01.2023, 12:15
The vulnerability allows a remote unauthenticated attacker to download a backup file, if one exists. That backup file might contain sensitive information like credentials and cryptographic material. A valid user has to create a backup after the last reboot for this attack to be successfull.Enginsight
Vendor | Product | Version |
---|---|---|
wago | pfc100_firmware | 16 ≤ 𝑥 ≤ 22 |
wago | pfc200_firmware | 16 ≤ 𝑥 ≤ 22 |
wago | touch_panel_600_advanced_firmware | 16 ≤ 𝑥 ≤ 22 |
wago | touch_panel_600_standard_firmware | 16 ≤ 𝑥 ≤ 22 |
wago | touch_panel_600_marine_firmware | 16 ≤ 𝑥 ≤ 22 |
wago | cc100_firmware | 16 ≤ 𝑥 ≤ 22 |
wago | edge_controller_firmware | 16 ≤ 𝑥 ≤ 22 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration