CVE-2023-46143

Published: Dic 14, 2023 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2023-50386 Aliases: GSD-2023-46143
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,5
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: high
Availability: none

Description

AI Translation Available

Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated remote attacker to modify some or all applications on a PLC.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0024
Percentile
0,5th
Updated

EPSS Score Trend (Last 90 Days)

494

Download of Code Without Integrity Check

Draft
Common Consequences
Security Scopes Affected:
Integrity Availability Confidentiality Other
Potential Impacts:
Execute Unauthorized Code Or Commands Alter Execution Logic Other
Applicable Platforms
All platforms may be affected
View CWE Details
Operating System

Rfc 460R Pn 3Tx Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:rfc_460r_pn_3tx_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Axc 1050 Xc Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:axc_1050_xc_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Rfc 480S Pn 4Tx Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:rfc_480s_pn_4tx_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Ilc1X0 Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:ilc1x0_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Rfc 430 Eth-Ib Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:rfc_430_eth-ib_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Ilc 3Xx Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:ilc_3xx_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Axc 3050 Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:axc_3050_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Pc Worx Rt Basic Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:pc_worx_rt_basic_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Ilc1X1 Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:ilc1x1_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Automationworx Software Suite by Phoenixcontact

cpe:2.3:a:phoenixcontact:automationworx_software_suite:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Pc Worx Srt by Phoenixcontact

cpe:2.3:a:phoenixcontact:pc_worx_srt:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Config\+ by Phoenixcontact

cpe:2.3:a:phoenixcontact:config\+:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Rfc 450 Eth-Ib Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:rfc_450_eth-ib_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Pc Worx by Phoenixcontact

cpe:2.3:a:phoenixcontact:pc_worx:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Rfc 470S Pn 3Tx Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:rfc_470s_pn_3tx_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Pc Worx Express by Phoenixcontact

cpe:2.3:a:phoenixcontact:pc_worx_express:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Fc 350 Pci Eth Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:fc_350_pci_eth_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Axc 1050 Firmware by Phoenixcontact

cpe:2.3:o:phoenixcontact:axc_1050_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://cert.vde.com/en/advisories/VDE-2023-057/
https://cert.vde.com/en/advisories/VDE-2023-057/