VYPR

FL SWITCH

by Phoenixcontact

CVEs (28)

  • CVE-2025-41694MedDec 9, 2025
    risk 0.42cvss 6.5epss 0.00

    A low privileged remote attacker can run the webshell with an empty command containing whitespace. The server will then block until it receives more data, resulting in a DoS condition of the websserver.

  • CVE-2021-21003MedJun 25, 2021
    risk 0.35cvss 5.3epss 0.01

    In Phoenix Contact FL SWITCH SMCS series products in multiple versions fragmented TCP-Packets may cause a Denial of Service of Web-, SNMP- and ICMP-Echo services. The switching functionality of the device is not affected.

  • CVE-2018-10729MedMay 17, 2018
    risk 0.35cvss 5.3epss 0.02

    All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 allow reading the configuration file by an unauthenticated user.

  • CVE-2026-22321MedMar 18, 2026
    risk 0.34cvss 5.3epss 0.00

    A stack-based buffer overflow in the device's Telnet/SSH CLI login routine occurs when a unauthenticated attacker send an oversized or unexpected username input. An overflow condition crashes the thread handling the login attempt, forcing the session to close. Because other CLI…

  • CVE-2026-22319MedMar 18, 2026
    risk 0.32cvss 4.9epss 0.00

    A stack-based buffer overflow in the device's file installation workflow allows a high-privileged attacker to send oversized POST parameters that overflow a fixed-size stack buffer within an internal process, resulting in a DoS attack.

  • CVE-2026-22318MedMar 18, 2026
    risk 0.32cvss 4.9epss 0.00

    A stack-based buffer overflow vulnerability in the device's file transfer parameter workflow allows a high-privileged attacker to send oversized POST parameters, causing memory corruption in an internal process, resulting in a DoS attack.

  • CVE-2025-41696MedDec 9, 2025
    risk 0.30cvss 4.6epss 0.00

    An attacker can use an undocumented UART port on the PCB as a side-channel with the user hardcoded credentials obtained from CVE-2025-41692 to gain read access to parts of the filesystem of the device.

  • CVE-2025-41693MedDec 9, 2025
    risk 0.28cvss 4.3epss 0.01

    A low privileged remote attacker can use the ssh feature to execute commands directly after login. The process stays open and uses resources which leads to a reduced performance of the management functions. Switching functionality is not affected.

Page 2 of 2