CVE-2024-41967: WAGO: Boot Mode Manipulation in Multiple Devices
Published Nov 18, 2024
·Updated
A low privileged remote attacker may modify the boot mode configuration setup of the device, leading to modification of the firmware upgrade process or a denial-of-service attack.
Affected Software
1 affected component
WAGO Multiple Devices
Event History
Nov 18, 2024
CVE Published
via MITRE·09:03 AM
Data Sourced
via MITRE·09:03 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-41967?
CVE-2024-41967 is classified as a low severity vulnerability.
2
How do I fix CVE-2024-41967?
To mitigate CVE-2024-41967, you should update your WAGO devices to the latest firmware provided by the vendor.
3
What are the potential impacts of CVE-2024-41967?
CVE-2024-41967 could allow an attacker to modify boot mode configurations, potentially disrupting firmware upgrades or causing denial-of-service.
4
Which devices are affected by CVE-2024-41967?
CVE-2024-41967 affects multiple devices produced by WAGO.
5
Can CVE-2024-41967 be exploited remotely?
Yes, CVE-2024-41967 can be exploited by a low privileged remote attacker.