CVE-2022-22511
—CVSS 3.1
5.4 medium
EPSS
<1%p45
Published
()
Modified
Description
Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attacker with user privileges may use this to gain access to confidential information on a PC that connects to the WBM after it has been compromised.
- Vendors
- wago
- Products
- 750-8100 firmware, 750-8101 firmware, 750-8102 firmware, 751-9301 firmware, 750-8202 firmware, 762-4205\/8000-002 firmware, 762-4206\/8000-002 firmware, 762-4305\/8000-002 firmware, 762-4306\/8000-002 firmware, 762-5205\/8000-001 firmware, 762-5206\/8000-001 firmware, 762-5305\/8000-002 firmware
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.