ZeroHour

CVE-2023-46141

CVSS 3.1
9.8 critical
EPSS
<1%p57
Published
()
Modified
Description

Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic line allow an remote unauthenticated attacker to gain full access of the affected device.

Vendors
phoenixcontact
Products
automationworx software suite, axc 1050 firmware, axc 1050 xc firmware, axc 3050 firmware, config\+, fc 350 pci eth firmware, ilc1x0 firmware, ilc1x1 firmware, ilc 3xx firmware, pc worx, pc worx express, pc worx rt basic firmware
Weakness
CWE-732
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.