Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic line allow an remote unauthenticated attacker to gain full access of the affected device.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-055/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
|
Configuration 11 (hide)
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
Configuration 18 (hide)
AND |
|
History
21 Dec 2023, 17:14
Type | Values Removed | Values Added |
---|---|---|
First Time |
Phoenixcontact rfc 480s Pn 4tx Firmware
Phoenixcontact ilc 3xx Phoenixcontact axc 3050 Firmware Phoenixcontact axc 1050 Xc Phoenixcontact axc 1050 Firmware Phoenixcontact fc 350 Pci Eth Firmware Phoenixcontact ilc1x0 Phoenixcontact fc 350 Pci Eth Phoenixcontact config\+ Phoenixcontact ilc1x1 Firmware Phoenixcontact axc 3050 Phoenixcontact rfc 430 Eth-ib Phoenixcontact pc Worx Rt Basic Firmware Phoenixcontact axc 1050 Xc Firmware Phoenixcontact pc Worx Srt Phoenixcontact ilc1x0 Firmware Phoenixcontact rfc 460r Pn 3tx Firmware Phoenixcontact automationworx Software Suite Phoenixcontact ilc 3xx Firmware Phoenixcontact pc Worx Phoenixcontact axc 1050 Phoenixcontact rfc 470s Pn 3tx Phoenixcontact ilc1x1 Phoenixcontact rfc 450 Eth-ib Phoenixcontact pc Worx Rt Basic Phoenixcontact rfc 450 Eth-ib Firmware Phoenixcontact rfc 480s Pn 4tx Phoenixcontact rfc 430 Eth-ib Firmware Phoenixcontact pc Worx Express Phoenixcontact Phoenixcontact rfc 460r Pn 3tx Phoenixcontact rfc 470s Pn 3tx Firmware |
|
References | () https://cert.vde.com/en/advisories/VDE-2023-055/ - Third Party Advisory | |
CPE | cpe:2.3:o:phoenixcontact:ilc1x0_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:rfc_450_eth-ib_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:rfc_430_eth-ib:-:*:*:*:*:*:*:* cpe:2.3:a:phoenixcontact:config\+:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:ilc_3xx_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:pc_worx_rt_basic_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:rfc_460r_pn_3tx:-:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:fc_350_pci_eth:-:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:fc_350_pci_eth_firmware:*:*:*:*:*:*:*:* cpe:2.3:a:phoenixcontact:automationworx_software_suite:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:pc_worx_rt_basic:-:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:axc_1050:-:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:rfc_470s_pn_3tx:-:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:rfc_480s_pn_4tx_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:axc_1050_xc_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:ilc1x0:-:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:axc_1050_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:axc_3050_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:ilc1x1:-:*:*:*:*:*:*:* cpe:2.3:a:phoenixcontact:pc_worx:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:ilc1x1_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:rfc_470s_pn_3tx_firmware:*:*:*:*:*:*:*:* cpe:2.3:a:phoenixcontact:pc_worx_express:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:rfc_450_eth-ib:-:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:rfc_430_eth-ib_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:phoenixcontact:rfc_460r_pn_3tx_firmware:*:*:*:*:*:*:*:* cpe:2.3:a:phoenixcontact:pc_worx_srt:*:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:axc_3050:-:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:axc_1050_xc:-:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:rfc_480s_pn_4tx:-:*:*:*:*:*:*:* cpe:2.3:h:phoenixcontact:ilc_3xx:-:*:*:*:*:*:*:* |
14 Dec 2023, 14:49
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-14 14:15
Updated : 2023-12-21 17:14
NVD link : CVE-2023-46141
Mitre link : CVE-2023-46141
JSON object : View
Products Affected
phoenixcontact
- ilc1x0
- fc_350_pci_eth_firmware
- rfc_470s_pn_3tx_firmware
- axc_1050_firmware
- axc_1050_xc
- axc_1050
- ilc1x1
- automationworx_software_suite
- rfc_480s_pn_4tx_firmware
- rfc_430_eth-ib_firmware
- rfc_460r_pn_3tx
- pc_worx_srt
- fc_350_pci_eth
- rfc_480s_pn_4tx
- rfc_460r_pn_3tx_firmware
- ilc1x1_firmware
- axc_3050
- rfc_470s_pn_3tx
- rfc_450_eth-ib
- axc_1050_xc_firmware
- pc_worx_express
- pc_worx
- ilc_3xx
- rfc_450_eth-ib_firmware
- pc_worx_rt_basic_firmware
- ilc_3xx_firmware
- config\+
- ilc1x0_firmware
- pc_worx_rt_basic
- axc_3050_firmware
- rfc_430_eth-ib
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource