CVE-2022-22511

Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attacker with user privileges may use this to gain access to confidential information on a PC that connects to the WBM after it has been compromised.
References
Link Resource
https://cert.vde.com/en/advisories/VDE-2022-004/ Mitigation Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wago:750-8100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8100:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:wago:750-8101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8101:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:wago:750-8102_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:wago:751-9301_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:751-9301:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:wago:750-8202_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:wago:762-4205\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4205\/8000-002:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:wago:762-4206\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4206\/8000-002:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:wago:762-4305\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4305\/8000-002:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:wago:762-4306\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4306\/8000-002:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:wago:762-5205\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5205\/8000-001:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:wago:762-5206\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5206\/8000-001:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:wago:762-5305\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5305\/8000-002:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:wago:762-5306\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5306\/8000-002:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:wago:762-6301\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6301\/8000-002:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:wago:762-6302\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6302\/8000-002:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:wago:762-6303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6303\/8000-002:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:wago:762-6304\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6304\/8000-002:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:wago:750-8102\/025-000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102\/025-000:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:wago:750-8101\/025-000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102\/025-000:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:wago:750-82_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-82:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:wago:750-8202\/000-012_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/000-012:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:wago:750-8202\/000-022_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/000-022:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:wago:750-8202\/025-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/025-001:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:wago:750-8202\/025-000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202\/025-000:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:wago:752-8303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:752-8303\/8000-002:-:*:*:*:*:*:*:*

Information

Published : 2022-03-09 12:15

Updated : 2022-03-18 06:49


NVD link : CVE-2022-22511

Mitre link : CVE-2022-22511


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

wago

  • 762-6304\/8000-002_firmware
  • 762-6301\/8000-002
  • 762-5205\/8000-001
  • 762-6303\/8000-002_firmware
  • 762-6302\/8000-002_firmware
  • 762-5206\/8000-001_firmware
  • 762-5306\/8000-002
  • 751-9301
  • 750-8102\/025-000
  • 762-4305\/8000-002_firmware
  • 762-4306\/8000-002
  • 762-5206\/8000-001
  • 750-8202\/000-022_firmware
  • 750-8100_firmware
  • 762-5305\/8000-002
  • 750-8202\/025-000_firmware
  • 752-8303\/8000-002_firmware
  • 750-8202\/000-022
  • 762-4206\/8000-002
  • 750-82_firmware
  • 762-6303\/8000-002
  • 750-8202\/000-012_firmware
  • 750-8202\/025-001_firmware
  • 750-8100
  • 750-8102\/025-000_firmware
  • 750-8102_firmware
  • 752-8303\/8000-002
  • 762-6302\/8000-002
  • 750-8101
  • 750-8101_firmware
  • 750-82
  • 750-8202_firmware
  • 762-5306\/8000-002_firmware
  • 751-9301_firmware
  • 750-8101\/025-000_firmware
  • 762-6301\/8000-002_firmware
  • 762-4206\/8000-002_firmware
  • 750-8102
  • 750-8202\/025-001
  • 750-8202\/025-000
  • 762-6304\/8000-002
  • 762-4205\/8000-002
  • 762-4305\/8000-002
  • 762-5205\/8000-001_firmware
  • 762-4205\/8000-002_firmware
  • 750-8202
  • 762-5305\/8000-002_firmware
  • 750-8202\/000-012
  • 762-4306\/8000-002_firmware