Phoenixcontact

Fl Mguard Rs4000 Tx/tx-m Firmware

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.63%
  • Veröffentlicht 10.09.2024 09:15:07
  • Zuletzt bearbeitet 27.09.2024 18:59:31

An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data.

  • EPSS 1.15%
  • Veröffentlicht 10.09.2024 09:15:04
  • Zuletzt bearbeitet 27.09.2024 19:33:08

A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices.

  • EPSS 1.15%
  • Veröffentlicht 10.09.2024 09:15:04
  • Zuletzt bearbeitet 27.09.2024 19:33:22

A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices.

  • EPSS 0.41%
  • Veröffentlicht 10.09.2024 09:15:04
  • Zuletzt bearbeitet 27.09.2024 19:33:37

A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices.

  • EPSS 0.15%
  • Veröffentlicht 10.09.2024 08:15:04
  • Zuletzt bearbeitet 28.09.2024 23:56:32

An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connections to the pathfinder TCP encapsulation service. The impact is limited to blocking of valid IPsec VPN...

  • EPSS 0.02%
  • Veröffentlicht 13.06.2023 07:15:46
  • Zuletzt bearbeitet 21.11.2024 07:59:03

Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.

  • EPSS 0.7%
  • Veröffentlicht 15.11.2022 11:15:12
  • Zuletzt bearbeitet 21.11.2024 07:19:37

A remote, unauthenticated attacker could cause a denial-of-service of PHOENIX CONTACT FL MGUARD and TC MGUARD devices below version 8.9.0 by sending a larger number of unauthenticated HTTPS connections originating from different source IP’s. Configur...