ZeroHour

CVE-2025-41693

CVSS 3.1
4.3 medium
EPSS
<1%p42
Published
()
Modified
Description

A low privileged remote attacker can use the ssh feature to execute commands directly after login. The process stays open and uses resources which leads to a reduced performance of the management functions. Switching functionality is not affected.

Vendors
phoenixcontact
Products
fl switch 2708 pn firmware, fl switch 2708 firmware, fl switch 2608 pn firmware, fl switch 2608 firmware, fl switch 2516 pn firmware, fl switch 2516 firmware, fl switch 2514-2sfp pn firmware, fl switch 2514-2sfp firmware, fl switch 2512-2gc-2sfp firmware, fl switch 2508 pn firmware, fl switch 2508\/k1 firmware, fl switch 2508 firmware
Weakness
CWE-770
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.