CVE-2026-3587
CVSS 10 CRITICAL: an unauthenticated remote attacker can exploit a hidden function in the CLI prompt to escape the restricted… EPSS 0.7% (49º percentile).
Vulnerabilità · 190 giorni fa
Switch industriali managed di WAGO contengono una funzione CLI nascosta che un attaccante remoto non autenticato può sfruttare. Sfruttando la funzione l'attaccante può evadere l'interfaccia ristretta e compromettere completamente il dispositivo (CVE-2026-3587).
CVSS 10 CRITICAL: an unauthenticated remote attacker can exploit a hidden function in the CLI prompt to escape the restricted… EPSS 0.7% (49º percentile).
1 fonte che coprono questa storia
WAGO GmbH & Co. KG Industrial Managed Switches | CISA
KG Industrial Managed Switches Summary An unauthenticated remote attacker can exploit a hidden function in the CLI prompt to escape the restricted interface, leading to full compromise of the device.
Part of the PlainSec briefing for 2026-03-27