CVE-2022-22511

V

arious configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attacker with user privileges may use this to gain access to confidential information on a PC that connects to the WBM after it has been compromised.

References
Link Resource
https://cert.vde.com/en/advisories/VDE-2022-004/ Mitigation Third Party Advisory
https://cert.vde.com/en/advisories/VDE-2022-004/ Mitigation Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wago:750-8100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8100:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:wago:750-8101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8101:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:wago:750-8102_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:wago:751-9301_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:751-9301:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:wago:750-8202_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:wago:762-4205\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4205\/8000-002:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:wago:762-4206\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4206\/8000-002:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:wago:762-4305\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4305\/8000-002:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:wago:762-4306\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4306\/8000-002:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:wago:762-5205\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5205\/8000-001:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:wago:762-5206\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5206\/8000-001:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:wago:762-5305\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5305\/8000-002:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:wago:762-5306\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5306\/8000-002:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:wago:762-6301\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6301\/8000-002:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:wago:762-6302\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6302\/8000-002:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:wago:762-6303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6303\/8000-002:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:wago:762-6304\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6304\/8000-002:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:wago:750-8102\/025-000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102\/025-000:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:wago:750-8101\/025-000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102\/025-000:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:wago:750-82_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-82:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:wago:750-8202\/000-012_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/000-012:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:wago:750-8202\/000-022_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/000-022:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:wago:750-8202\/025-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/025-001:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:wago:750-8202\/025-000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/025-000:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:wago:752-8303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:752-8303\/8000-002:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:46

Type Values Removed Values Added
References () https://cert.vde.com/en/advisories/VDE-2022-004/ - Mitigation, Third Party Advisory () https://cert.vde.com/en/advisories/VDE-2022-004/ - Mitigation, Third Party Advisory