CVE-2025-41713: WAGO: Vulnerability in hardware switch circuit
During a short time frame while the device is booting an unauthenticated remote attacker can send traffic to unauthorized networks due to the switch operating in an undefined state until a CPU-induced reset allows proper configuration.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41713?
CVE-2025-41713 is classified as a high severity vulnerability due to the potential for unauthorized network access during the device's boot process.
How do I fix CVE-2025-41713?
To fix CVE-2025-41713, ensure that the device firmware is updated to the latest version provided by WAGO that addresses this vulnerability.
What are the potential impacts of CVE-2025-41713?
The potential impacts of CVE-2025-41713 include unauthorized access to sensitive network resources and disruption of network operations.
Who is affected by CVE-2025-41713?
Devices using the WAGO hardware switch circuit are affected by CVE-2025-41713 during the boot process.
Can CVE-2025-41713 be exploited remotely?
Yes, CVE-2025-41713 can be exploited remotely by an unauthenticated attacker during the short boot-up timeframe.