CVE-2024-7699
- EPSS 0.63%
- Published 10.09.2024 09:15:07
- Last modified 27.09.2024 18:59:31
An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data.
CVE-2024-43385
- EPSS 1.15%
- Published 10.09.2024 09:15:04
- Last modified 27.09.2024 19:33:08
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices.
CVE-2024-43386
- EPSS 1.15%
- Published 10.09.2024 09:15:04
- Last modified 27.09.2024 19:33:22
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices.
CVE-2024-43387
- EPSS 0.41%
- Published 10.09.2024 09:15:04
- Last modified 27.09.2024 19:33:37
A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices.
CVE-2024-7734
- EPSS 0.15%
- Published 10.09.2024 08:15:04
- Last modified 28.09.2024 23:56:32
An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connections to the pathfinder TCP encapsulation service. The impact is limited to blocking of valid IPsec VPN...
CVE-2023-2673
- EPSS 0.02%
- Published 13.06.2023 07:15:46
- Last modified 21.11.2024 07:59:03
Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.
CVE-2022-3480
- EPSS 0.7%
- Published 15.11.2022 11:15:12
- Last modified 21.11.2024 07:19:37
A remote, unauthenticated attacker could cause a denial-of-service of PHOENIX CONTACT FL MGUARD and TC MGUARD devices below version 8.9.0 by sending a larger number of unauthenticated HTTPS connections originating from different source IP’s. Configur...