CVE-2022-3738
19.01.2023, 12:15
The vulnerability allows a remote unauthenticated attacker to download a backup file, if one exists. That backup file might contain sensitive information like credentials and cryptographic material. A valid user has to create a backup after the last reboot for this attack to be successfull.Enginsight
| Vendor | Product | Version |
|---|---|---|
| wago | pfc100_firmware | 16 ≤ 𝑥 ≤ 22 |
| wago | pfc200_firmware | 16 ≤ 𝑥 ≤ 22 |
| wago | touch_panel_600_advanced_firmware | 16 ≤ 𝑥 ≤ 22 |
| wago | touch_panel_600_standard_firmware | 16 ≤ 𝑥 ≤ 22 |
| wago | touch_panel_600_marine_firmware | 16 ≤ 𝑥 ≤ 22 |
| wago | cc100_firmware | 16 ≤ 𝑥 ≤ 22 |
| wago | edge_controller_firmware | 16 ≤ 𝑥 ≤ 22 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration