Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.2
CVE-2023-37862
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access upload-functions of the HTTP …
Wp 6070 Wvps Firmware
4.0.10+
HIGH 7.2
CVE-2023-37863
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges may use an a special SNMP re…
Wp 6070 Wvps Firmware
4.0.10+
HIGH 7.2
CVE-2023-37864
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges may use an a special SNMP re…
Wp 6070 Wvps Firmware
4.0.10+
HIGH 7.5
CVE-2023-37860
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote unauthenticated attacker can obtain the r/w community string of th…
Wp 6070 Wvps Firmware
4.0.10+
HIGH 7.2
CVE-2023-37857
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read har…
Wp 6070 Wvps Firmware
4.0.10+
HIGH 7.2
CVE-2023-37859
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 the SNMP daemon is running with root privileges allowing a remote attacker …
Wp 6070 Wvps Firmware
4.0.10+
CRITICAL 10.0
CVE-2023-3572
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote, unauthenticated attacker may use an attribute of a specific HTTP …
Wp 6070 Wvps Firmware
4.0.10+
CRITICAL 9.6
CVE-2023-3526
In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior to 2.06.10 an unauthenticated…
Cloud Client 1101t Tx Firmware
2.06.10 / 2.07.2+
HIGH 8.8
CVE-2023-3570
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use a specific HTTP DELETE reques…
Wp 6070 Wvps Firmware
4.0.10+
HIGH 8.8
CVE-2023-3571
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use a specific HTTP POST releated…
Wp 6070 Wvps Firmware
4.0.10+
HIGH 8.8
CVE-2023-3573
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use a command injection in a HTTP…
Wp 6070 Wvps Firmware
4.0.10+
MEDIUM 5.3
CVE-2023-2673
Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules …
Fl Mguard 2102 Firmware
after 10.1.1
HIGH 8.8
CVE-2023-1109
In Phoenix Contacts ENERGY AXC PU Web service an authenticated restricted user of the web frontend can access, read, write and create files throughou…
Energy Axc Pu
after 04.15.00.00
HIGH 7.8
CVE-2022-3737
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 memory can be read beyond the intended scope due to insufficient validation of in…
Automationworx Software Suite
Mitigation only
HIGH 7.5
CVE-2022-3480
A remote, unauthenticated attacker could cause a denial-of-service of PHOENIX CONTACT FL MGUARD and TC MGUARD devices below version 8.9.0 by sending …
Fl Mguard Centerport Firmware
8.9.0+
HIGH 7.8
CVE-2022-3461
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 manipulated PC Worx or Config+ files could lead to a heap buffer overflow and a r…
Automationworx Software Suite
Mitigation only
HIGH 7.5
CVE-2021-34579
In Phoenix Contact: FL MGUARD DM version 1.12.0 and 1.13.0 access to the Apache web server being installed as part of the FL MGUARD DM on Microsoft W…
Fl Mguard Dm
Mitigation only
CRITICAL 9.8
CVE-2022-31800
An unauthenticated, remote attacker could upload malicious logic to devices based on ProConOS/ProConOS eCLR in order to gain full control over the de…
Axc 1050 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-31801
An unauthenticated, remote attacker could upload malicious logic to the devices based on ProConOS/ProConOS eCLR in order to gain full control over th…
Multiprog
Mitigation only
CRITICAL 9.1
CVE-2022-29898
On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the configuration file uploader in the WebUI to execute arbitrary code…
Rad Ism 900 En Bd Firmware
Mitigation only
CRITICAL 9.1
CVE-2022-29897
On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the traceroute utility integrated in the WebUI to execute arbitrary co…
Rad Ism 900 En Bd Firmware
Mitigation only
HIGH 8.8
CVE-2022-22509
In Phoenix Contact FL SWITCH Series 2xxx in version 3.00 an incorrect privilege assignment allows an low privileged user to enable full access to the…
Fl Switch 2005 Firmware
Mitigation only
HIGH 7.5
CVE-2021-34598
In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 and 1.5.0 the remote logging functionality is impaired by the lack of memory rele…
Fl Mguard 1102 Firmware
Mitigation only
HIGH 7.8
CVE-2021-34597
Improper Input Validation vulnerability in PC Worx Automation Suite of Phoenix Contact up to version 1.88 could allow an attacker with a manipulated …
Pc Worx
after 1.88
HIGH 7.5
CVE-2021-34570
Multiple Phoenix Contact PLCnext control devices in versions prior to 2021.0.5 LTS are prone to a DoS attack through special crafted JSON requests.
Plcnext Technology Starterkit Firmware
2021.0.5+
HIGH 7.5
CVE-2021-33541
Phoenix Contact Classic Line Controllers ILC1x0 and ILC1x1 in all versions/variants are affected by a Denial-of-Service vulnerability. The communicat…
Ilc1x0 Firmware
Mitigation only
HIGH 7.3
CVE-2021-33540
In certain devices of the Phoenix Contact AXL F BK and IL BK product families an undocumented password protected FTP access to the root directory exi…
Axl F Bk Pn Tps Xc Firmware
1.30 / 1.40+
HIGH 7.0
CVE-2021-33542
Phoenix Contact Classic Automation Worx Software Suite in Version 1.87 and below is affected by a remote code execution vulnerability. Manipulated PC…
Config\+
after 1.87
HIGH 7.5
CVE-2021-21002
In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denial of service.
Fl Comserver Uni 232\/422\/485 Firmware
2.40+
HIGH 7.5
CVE-2021-21005
In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet with the Urgent-Flag set and th…
Fl Switch Smcs 16tx Firmware
after 4.70