ID

VAR-202210-0985


CVE

CVE-2022-3281


TITLE

Multiple WAGO Product security vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-202210-1059

DESCRIPTION

WAGO Series PFC100/PFC200, Series Touch Panel 600, Compact Controller CC100 and Edge Controller in multiple versions are prone to a loss of MAC-Address-Filtering after reboot. This may allow an remote attacker to circumvent the reach the network that should be protected by the MAC address filter.

Trust: 1.0

sources: NVD: CVE-2022-3281

AFFECTED PRODUCTS

vendor:wagomodel:762-4302\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4201\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8206\/040-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8206\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4104scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8215scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8207scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4203\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-5304\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8101scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-6203\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-5306\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5204\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8100scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8208\/025-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8211scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212\/025-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212\/040-010scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/000-100scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-5204\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8208\/025-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8100scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4102scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8217\/600-000scope:gteversion:03.04.10\(16\)

Trust: 1.0

vendor:wagomodel:750-8206\/025-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8202\/040-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:752-8303\/8000-002scope:gteversion:03.06.09\(18\)

Trust: 1.0

vendor:wagomodel:750-8212\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4102scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8213scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4303\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/040-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/040-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8216\/040-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8101\/000-010scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8202\/000-012scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8210\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8213\/040-010scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4103scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8101\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4204\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4101scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8101\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-6202\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8207\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8215scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5205\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8211\/040-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8214scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8206scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4302\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-6304\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4206\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8216\/025-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8101scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6201\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8217\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-5303\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5306\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/040-010scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8216scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/000-100scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5303\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8217\/625-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8102scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:751-9301scope:gteversion:03.07.17\(19\)

Trust: 1.0

vendor:wagomodel:750-8216\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8217\/025-000scope:gteversion:03.04.10\(16\)

Trust: 1.0

vendor:wagomodel:750-8210scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8213scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212\/040-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5305\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8206\/040-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5203\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-5206\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6302\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8102\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8211scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-5203\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4204\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-6203\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8213\/040-010scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4304\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212\/025-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8202\/000-011scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8207scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8206\/040-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8214scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8217scope:gteversion:03.04.10\(16\)

Trust: 1.0

vendor:wagomodel:750-8206scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4101scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-4206\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6301\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8202\/000-022scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8217\/600-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/025-002scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4304\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8210\/040-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8207\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8202\/000-022scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4205\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6304\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8202\/040-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8216\/025-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:751-9301scope:lteversion:03.09.08\(21\)

Trust: 1.0

vendor:wagomodel:750-8212\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4303\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8217\/625-000scope:gteversion:03.04.10\(16\)

Trust: 1.0

vendor:wagomodel:750-8216\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8202\/000-012scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8208scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8211\/040-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8102scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8216\/040-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5305\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-4203\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8208\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8208scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-5206\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-6303\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4103scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-4104scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4201\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-5304\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6303\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8212\/025-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6302\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8210\/040-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-6201\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-6301\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:752-8303\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8216scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8206\/025-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4202\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8101\/000-010scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8210scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-6204\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8207\/025-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-4202\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4205\/8000-001scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:762-4301\/8000-002scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212\/040-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-6202\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8212scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8202\/000-011scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8206\/040-001scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-6204\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8207\/025-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:750-8210\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8102\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8206\/025-000scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:762-5205\/8000-001scope:gteversion:03.01.07\(13\)

Trust: 1.0

vendor:wagomodel:762-4301\/8000-002scope:lteversion:03.10.09\(22\)

Trust: 1.0

vendor:wagomodel:750-8217scope:lteversion:03.10.08\(22\)

Trust: 1.0

vendor:wagomodel:750-8208\/025-000scope:gteversion:03.01.07\(13\)

Trust: 1.0

sources: NVD: CVE-2022-3281

CVSS

SEVERITY

CVSSV2

CVSSV3

info@cert.vde.com: CVE-2022-3281
value: HIGH

Trust: 1.0

nvd@nist.gov: CVE-2022-3281
value: HIGH

Trust: 1.0

CNNVD: CNNVD-202210-1059
value: HIGH

Trust: 0.6

info@cert.vde.com: CVE-2022-3281
baseSeverity: HIGH
baseScore: 7.5
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: HIGH
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 3.6
version: 3.1

Trust: 2.0

sources: CNNVD: CNNVD-202210-1059 // NVD: CVE-2022-3281 // NVD: CVE-2022-3281

PROBLEMTYPE DATA

problemtype:CWE-440

Trust: 1.0

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2022-3281

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-202210-1059

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202210-1059

PATCH

title:Multiple WAGO Product security vulnerabilitiesurl:http://123.124.177.30/web/xxk/bdxqById.tag?id=211650

Trust: 0.6

sources: CNNVD: CNNVD-202210-1059

EXTERNAL IDS

db:NVDid:CVE-2022-3281

Trust: 1.6

db:CERT@VDEid:VDE-2022-042

Trust: 1.6

db:CNNVDid:CNNVD-202210-1059

Trust: 0.6

sources: CNNVD: CNNVD-202210-1059 // NVD: CVE-2022-3281

REFERENCES

url:https://cert.vde.com/en/advisories/vde-2022-042/

Trust: 1.6

url:https://cxsecurity.com/cveshow/cve-2022-3281/

Trust: 0.6

sources: CNNVD: CNNVD-202210-1059 // NVD: CVE-2022-3281

SOURCES

db:CNNVDid:CNNVD-202210-1059
db:NVDid:CVE-2022-3281

LAST UPDATE DATE

2024-08-14T14:43:40.772000+00:00


SOURCES UPDATE DATE

db:CNNVDid:CNNVD-202210-1059date:2022-11-03T00:00:00
db:NVDid:CVE-2022-3281date:2022-11-04T19:14:00.620

SOURCES RELEASE DATE

db:CNNVDid:CNNVD-202210-1059date:2022-10-17T00:00:00
db:NVDid:CVE-2022-3281date:2022-10-17T09:15:12.387