Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2023-5592
Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated re…
Multiprog
Mitigation only
HIGH 7.5
CVE-2023-46143
Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated remote attacker to modify some …
Automationworx Software Suite
Mitigation only
CRITICAL 9.8
CVE-2023-0757
Incorrect Permission Assignment for Critical Resource vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unaut…
Multiprog
Mitigation only
CRITICAL 9.8
CVE-2023-46141
Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic line allow an remote unauthen…
Automationworx Software Suite
Mitigation only
HIGH 7.8
CVE-2022-3737
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 memory can be read beyond the intended scope due to insufficient validation of in…
Automationworx Software Suite
Mitigation only
HIGH 7.8
CVE-2022-3461
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 manipulated PC Worx or Config+ files could lead to a heap buffer overflow and a r…
Automationworx Software Suite
Mitigation only
HIGH 7.5
CVE-2021-34579
In Phoenix Contact: FL MGUARD DM version 1.12.0 and 1.13.0 access to the Apache web server being installed as part of the FL MGUARD DM on Microsoft W…
Fl Mguard Dm
Mitigation only
CRITICAL 9.8
CVE-2022-31800
An unauthenticated, remote attacker could upload malicious logic to devices based on ProConOS/ProConOS eCLR in order to gain full control over the de…
Axc 1050 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-31801
An unauthenticated, remote attacker could upload malicious logic to the devices based on ProConOS/ProConOS eCLR in order to gain full control over th…
Multiprog
Mitigation only
CRITICAL 9.1
CVE-2022-29898
On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the configuration file uploader in the WebUI to execute arbitrary code…
Rad Ism 900 En Bd Firmware
Mitigation only
CRITICAL 9.1
CVE-2022-29897
On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the traceroute utility integrated in the WebUI to execute arbitrary co…
Rad Ism 900 En Bd Firmware
Mitigation only
HIGH 8.8
CVE-2022-22509
In Phoenix Contact FL SWITCH Series 2xxx in version 3.00 an incorrect privilege assignment allows an low privileged user to enable full access to the…
Fl Switch 2005 Firmware
Mitigation only
HIGH 7.5
CVE-2021-34598
In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 and 1.5.0 the remote logging functionality is impaired by the lack of memory rele…
Fl Mguard 1102 Firmware
Mitigation only
HIGH 7.5
CVE-2021-33541
Phoenix Contact Classic Line Controllers ILC1x0 and ILC1x1 in all versions/variants are affected by a Denial-of-Service vulnerability. The communicat…
Ilc1x0 Firmware
Mitigation only
HIGH 7.5
CVE-2020-12524
Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unr…
Btp 2043w Firmware
Mitigation only
HIGH 8.8
CVE-2019-9743
An issue was discovered on PHOENIX CONTACT RAD-80211-XD and RAD-80211-XD/HP-BUS devices. Command injection can occur in the WebHMI component.
Rad 80211 Xd\/hp Bus Firmware
No fix yet
HIGH 8.8
CVE-2019-9744
An issue was discovered on PHOENIX CONTACT FL NAT SMCS 8TX, FL NAT SMN 8TX, FL NAT SMN 8TX-M, and FL NAT SMN 8TX-M-DMG devices. There is unauthorized…
Fl Nat Smn 8tx M Dmg Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-9201
Multiple Phoenix Contact devices allow remote attackers to establish TCP sessions to port 1962 and obtain sensitive information or make changes, as d…
Ilc 131 Eth Firmware
No fix yet
HIGH 7.3
CVE-2016-8366EPSS 6%
Webvisit in Phoenix Contact ILC PLCs offers a password macro to protect HMI pages on the PLC against casual or coincidental opening of HMI pages by t…
Ilc Plcs Firmware
No fix yet
HIGH 7.3
CVE-2016-8371EPSS 11%
The web server in Phoenix Contact ILC PLCs can be accessed without authenticating even if the authentication mechanism is enabled.
Ilc Plcs Firmware
No fix yet
HIGH 7.3
CVE-2016-8380EPSS 11%
The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.
Ilc Plcs Firmware
No fix yet
MEDIUM 6.1
CVE-2017-16723
A Cross-site Scripting issue was discovered in PHOENIX CONTACT FL COMSERVER BASIC 232/422/485, FL COMSERVER UNI 232/422/485, FL COMSERVER BAS 232/422…
Fl Comserver Basic 232 Firmware
Mitigation only
CRITICAL 9.8
CVE-2017-5159
An issue was discovered on Phoenix Contact mGuard devices that have been updated to Version 8.4.0. When updating an mGuard device to Version 8.4.0 vi…
Mguard Firmware
Mitigation only
MEDIUM 5.0
CVE-2008-7199
Phoenix Contact FL IL 24 BK-PAC allows remote attackers to cause a denial of service (hang) via (1) unspecified manipulations as demonstrated by a Ne…
Fl Il 24 Bk Pac
Mitigation only