← back
CVE-2023-4089lowCWE-610

WAGO: Multiple products vulnerable to local file inclusion

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 2.7epss 0.5%
exploitation probability
0.5%top 62% of all CVEs
observed exploitation
nono source reports it
On affected Wago products an remote attacker with administrative privileges can access files to which he has already access to through an undocumented local file inclusion. This access is logged in a different log file than expected.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N