Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to change the passwords of other non-admin users and thus to escalate non-root privileges.
References
Link Resource
https://cert.vde.com/en/advisories/VDE-2023-015/ Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: CERTVDE

Published: 2023-11-20T07:23:41.887Z

Updated: 2023-11-20T07:23:41.887Z

Reserved: 2023-06-23T09:01:09.552Z


Link: CVE-2023-3379

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-20T08:15:44.280

Modified: 2023-11-30T15:16:28.910


Link: CVE-2023-3379

JSON object: View

cve-icon Redhat Information

No data.