CVE Intelligence
Skip to main content
MEDIUM

CVE-2025-41713

CVE-2025-41713 — WAGO: Vulnerability in hardware switch circuit

During a short time frame while the device is booting an unauthenticated remote attacker can send traffic to unauthorized networks due to the switch operating in an undefined state until a CPU-induced reset allows proper configuration.

Published Updated Sources: cvelistV5, CERTVDE

Triage

Is it exploited, how likely is exploitation, what does it touch, and how severe do the scoring sources call it.

Exploitation

Unreported

no source claims exploitation

EPSS

0%

chance of exploitation in 30 days

Affects

wago

48 products listed

CVSS base

6.5

MEDIUM

CISA SSVC assessment

Three decision points CISA publishes for the CVEs it assesses · SSVC 2.0.3. A stakeholder decision, not a severity score.

CISA

Exploitation

None

none · proof-of-concept · active

Automatable

Yes

can an attacker script all four kill-chain steps

Technical impact

Partial

partial · total control of the vulnerable component

Affected scope

The catalog records vendors and products as separate lists, not pairs, so which product belongs to which vendor is not something this page can say.

Vendors (1)

Products (48)

cc100 0751 9301cc100 0751 9301 hw rev lt 082100cc100 0751 9301 k000 0005cc100 0751 9301 k000 0005 hw rev lt 082100cc100 0751 9401cc100 0751 9401 hw rev lt 052500cc100 0751 9402cc100 0751 9402 0000 0001cc100 0751 9402 0000 0001 hw rev lt 052800cc100 0751 9402 hw rev lt 032800cc100 0751 9403cc100 0751 9403 hw rev lt 022800edge controller 0752 8303 8000 0002edge controller 0752 8303 8000 0002 hw rev 32500tp600 0762 4101tp600 0762 4101 hw rev lt 072500tp600 0762 4102tp600 0762 4102 hw rev lt 072500tp600 0762 4104tp600 0762 4104 hw rev lt 062500tp600 0762 4201 8000 0001tp600 0762 4201 8000 0001 hw rev lt 072500tp600 0762 4201 8000 0002tp600 0762 4201 8000 0002 hw rev lt 072500tp600 0762 4301 8000 0002tp600 0762 4301 8000 0002 hw rev lt 072500tp600 0762 4302 8000 0002tp600 0762 4302 8000 0002 hw rev lt 072500tp600 0762 4303 8000 0002tp600 0762 4303 8000 0002 hw rev lt 062500tp600 0762 4304 8000 0002tp600 0762 4304 8000 0002 hw rev lt 062500tp600 0762 4305 8000 0002tp600 0762 4305 8000 0002 hw rev lt 052500tp600 0762 4306 8000 0001tp600 0762 4306 8000 0001 hw rev lt 042500tp600 0762 4306 8000 0002tp600 0762 4306 8000 0002 hw rev lt 042500tp600 0762 5201 8000 0001tp600 0762 5201 8000 0001 hw rev lt 062500tp600 0762 5203 8000 0001tp600 0762 5203 8000 0001 hw rev lt 062500tp600 0762 5204 8000 0001tp600 0762 5204 8000 0001 hw rev lt 052500tp600 0762 5205 8000 0001tp600 0762 5205 8000 0001 hw rev lt 032500tp600 0762 5206 8000 0001tp600 0762 5206 8000 0001 hw rev lt 042500

Every base score collected

Sources score independently and disagree; each row says who scored it and under which version.

ScoreVersionSeverityExpl.ImpactSource
6.5CVSS 3.1MEDIUMcvelistV5

Weakness & attack patterns

  • CWE-1188

Attack patterns reported against this CVE. The ATT&CK techniques below are inferred from its weakness class.

  • T1211Exploitation for Defensive Evasion
  • T1542.002Pre-OS Boot: Component Firmware
  • T1556Modify Authentication Process

References

2 on the record

Elsewhere on this site

  • wagoevery CVE for this vendor
  • CWE-1188other pages naming this weakness

Not in any source we poll

Listed rather than left blank: an empty field and an unmeasured one look identical on screen, and only one is a reason to look elsewhere.

  • No confirmed IOCs, IP addresses, domains, file hashes, or malware artifacts supplied.
  • No organization-specific asset inventory, compensating-control status, or patch deployment evidence supplied.
  • No exploit packet captures, log samples, or incident case IDs supplied.