CVE-2024-7699
- EPSS 0.63%
- Veröffentlicht 10.09.2024 09:15:07
- Zuletzt bearbeitet 27.09.2024 18:59:31
An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data.
CVE-2024-43385
- EPSS 1.15%
- Veröffentlicht 10.09.2024 09:15:04
- Zuletzt bearbeitet 27.09.2024 19:33:08
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices.
CVE-2024-43386
- EPSS 1.15%
- Veröffentlicht 10.09.2024 09:15:04
- Zuletzt bearbeitet 27.09.2024 19:33:22
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices.
CVE-2024-43387
- EPSS 0.41%
- Veröffentlicht 10.09.2024 09:15:04
- Zuletzt bearbeitet 27.09.2024 19:33:37
A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices.
CVE-2024-7734
- EPSS 0.15%
- Veröffentlicht 10.09.2024 08:15:04
- Zuletzt bearbeitet 28.09.2024 23:56:32
An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connections to the pathfinder TCP encapsulation service. The impact is limited to blocking of valid IPsec VPN...
CVE-2023-2673
- EPSS 0.02%
- Veröffentlicht 13.06.2023 07:15:46
- Zuletzt bearbeitet 21.11.2024 07:59:03
Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.
CVE-2022-3480
- EPSS 0.7%
- Veröffentlicht 15.11.2022 11:15:12
- Zuletzt bearbeitet 21.11.2024 07:19:37
A remote, unauthenticated attacker could cause a denial-of-service of PHOENIX CONTACT FL MGUARD and TC MGUARD devices below version 8.9.0 by sending a larger number of unauthenticated HTTPS connections originating from different source IP’s. Configur...