CVE-2023-46144
PHOENIX CONTACT: PLCnext Control prone to download of code without integrity check
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Productos afectados
PHOENIX CONTACT · AXC F 1152PHOENIX CONTACT · AXC F 2152PHOENIX CONTACT · AXC F 3152PHOENIX CONTACT · BPC 9102SPHOENIX CONTACT · EPC 1502PHOENIX CONTACT · EPC 1522PHOENIX CONTACT · PLCnext EngineerPHOENIX CONTACT · RFC 4072RPHOENIX CONTACT · RFC 4072S¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →