Incorrect Permission Assignment for Critical Resource vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated remote attacker to upload arbitrary malicious code and gain full access on the affected device.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-051/ | Third Party Advisory |
Configurations
History
21 Dec 2023, 17:13
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:phoenixcontact:multiprog:*:*:*:*:*:*:*:* cpe:2.3:a:phoenixcontact:proconos_eclr:*:*:*:*:*:*:*:* |
|
First Time |
Phoenixcontact proconos Eclr
Phoenixcontact Phoenixcontact multiprog |
|
References | () https://cert.vde.com/en/advisories/VDE-2023-051/ - Third Party Advisory |
14 Dec 2023, 14:49
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-14 14:15
Updated : 2023-12-21 17:13
NVD link : CVE-2023-0757
Mitre link : CVE-2023-0757
JSON object : View
Products Affected
phoenixcontact
- multiprog
- proconos_eclr
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource