CVE-2024-41973: WAGO: Remote Arbitrary File Write with Root Privileges in multiple Devices
Published Nov 18, 2024
·Updated
A low privileged remote attacker can specify an arbitrary file on the filesystem which may lead to an arbitrary file writes with root privileges.
Affected Software
1 affected component
Wago Devices
Event History
Nov 18, 2024
CVE Published
via MITRE·09:05 AM
Data Sourced
via MITRE·09:05 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-41973?
CVE-2024-41973 is classified as a low severity vulnerability.
2
Who is affected by CVE-2024-41973?
CVE-2024-41973 affects multiple WAGO devices.
3
How do I fix CVE-2024-41973?
To mitigate CVE-2024-41973, ensure that software updates are applied and unnecessary access permissions are restricted.
4
What could happen if CVE-2024-41973 is exploited?
Exploitation of CVE-2024-41973 could lead to arbitrary file writes with root privileges on the affected system.
5
Is there any workaround for CVE-2024-41973?
Currently, there are no documented workarounds for CVE-2024-41973 aside from applying patches.