CVE-2023-46144
- EPSS 0.05%
- Published 14.12.2023 14:15:43
- Last modified 21.11.2024 08:27:58
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.
CVE-2023-46142
- EPSS 0.26%
- Published 14.12.2023 14:15:42
- Last modified 21.11.2024 08:27:58
A incorrect permission assignment for critical resource vulnerability in PLCnext products allows an remote attacker with low privileges to gain full access on the affected devices.
CVE-2021-34570
- EPSS 0.45%
- Published 27.09.2021 09:15:07
- Last modified 21.11.2024 06:10:43
Multiple Phoenix Contact PLCnext control devices in versions prior to 2021.0.5 LTS are prone to a DoS attack through special crafted JSON requests.
CVE-2019-10998
- EPSS 0.05%
- Published 18.06.2019 13:15:10
- Last modified 21.11.2024 04:20:19
An issue was discovered on Phoenix Contact AXC F 2152 (No.2404267) before 2019.0 LTS and AXC F 2152 STARTERKIT (No.1046568) before 2019.0 LTS devices. Unlimited physical access to the PLC may lead to a manipulation of SD cards data. SD card manipulat...
CVE-2019-10997
- EPSS 0.52%
- Published 17.06.2019 18:15:10
- Last modified 21.11.2024 04:20:19
An issue was discovered on Phoenix Contact AXC F 2152 (No.2404267) before 2019.0 LTS and AXC F 2152 STARTERKIT (No.1046568) before 2019.0 LTS devices. Protocol Fuzzing on PC WORX Engineer by a man in the middle attacker stops the PLC service. The dev...