CVE-2023-3634CWE-1242
Festo: MSE6-C2M/D2M/E2M Incomplete User Documentation of Remote Accessible Functions
High · published April 16, 2026
What it is
In products of the MSE6 product-family by Festo a remote authenticated, low privileged attacker could use functions of undocumented test mode which could lead to a complete loss of confidentiality, integrity and availability.
The record
Technical detail
- CVSS v3.1
- 8.8 · HIGH
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- CVSS v4.0
- Not supplied
- EPSS
- 0.00504 · 41.2th percentile
- Weakness
- CWE-1242 · Inclusion of Undocumented Features or Chicken Bits
- Published
- 2026-04-16T04:40Z
EPSS history
Timeline