VYPR

Vendor CVEs

Phoenixcontact

All CVEs

174 total · sorted by risk
  • CVE-2025-24002MedJul 8, 2025
    risk 0.34cvss 5.3epss 0.00

    An unauthenticated remote attacker can use MQTT messages to crash a service on charging stations complying with German Calibration Law, resulting in a temporary denial-of-service for these stations until they got restarted by the watchdog.

  • CVE-2024-7734MedSep 10, 2024
    risk 0.34cvss 5.3epss 0.00

    An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connections to the pathfinder TCP encapsulation service. The impact is limited to blocking of valid IPsec VPN peers.

  • CVE-2024-25996MedMar 12, 2024
    risk 0.34cvss 5.3epss 0.00

    An unauthenticated remote attacker can perform a remote code execution due to an origin validation error. The access is limited to the service user.

  • CVE-2023-2673MedJun 13, 2023
    risk 0.34cvss 5.3epss 0.01

    Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.

  • CVE-2024-28135MedMay 14, 2024
    risk 0.33cvss 5.0epss 0.01

    A low privileged remote attacker can use a command injection vulnerability in the API which performs remote code execution as the user-app user due to improper input validation. The confidentiality is partly affected.

  • CVE-2026-22319MedMar 18, 2026
    risk 0.32cvss 4.9epss 0.00

    A stack-based buffer overflow in the device's file installation workflow allows a high-privileged attacker to send oversized POST parameters that overflow a fixed-size stack buffer within an internal process, resulting in a DoS attack.

  • CVE-2026-22318MedMar 18, 2026
    risk 0.32cvss 4.9epss 0.00

    A stack-based buffer overflow vulnerability in the device's file transfer parameter workflow allows a high-privileged attacker to send oversized POST parameters, causing memory corruption in an internal process, resulting in a DoS attack.

  • CVE-2023-37858MedAug 9, 2023
    risk 0.32cvss 4.9epss 0.00

    In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic keys allowing to decrypt an encrypted web application login password.

  • CVE-2023-3569MedAug 8, 2023
    risk 0.32cvss 4.9epss 0.01

    In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior to 2.06.10 an authenticated remote attacker with admin privileges could upload a crafted XML file which causes a denial-of-service.

  • CVE-2024-26005MedMar 12, 2024
    risk 0.31cvss 4.8epss 0.01

    An unauthenticated remote attacker can gain service level privileges through an incomplete cleanup during service restart after a DoS. 

  • CVE-2021-34582MedNov 10, 2021
    risk 0.31cvss 4.8epss 0.00

    In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 and 1.5.0 a user with high privileges can inject HTML code (XSS) through web-based management or the REST API with a manipulated certificate file.

  • CVE-2025-41696MedDec 9, 2025
    risk 0.30cvss 4.6epss 0.00

    An attacker can use an undocumented UART port on the PCB as a side-channel with the user hardcoded credentials obtained from CVE-2025-41692 to gain read access to parts of the filesystem of the device.

  • CVE-2025-41771MedAug 12, 2026
    risk 0.28cvss 4.3epss 0.00

    An authenticated attacker with low privileges can access an endpoint in the controller’s web interface that is vulnerable to SQL injection. The vulnerability affects a SQLite database used only for storing notification messages. Therefore, the impact is limited to the…

  • CVE-2025-41693MedDec 9, 2025
    risk 0.28cvss 4.3epss 0.01

    A low privileged remote attacker can use the ssh feature to execute commands directly after login. The process stays open and uses resources which leads to a reduced performance of the management functions. Switching functionality is not affected.

  • CVE-2023-37856MedAug 9, 2023
    risk 0.28cvss 4.3epss 0.01

    In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able to gain limited read-access to the device-filesystem through a configuration dialog within the embedded Qt browser .

  • CVE-2023-37855MedAug 9, 2023
    risk 0.28cvss 4.3epss 0.01

    In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able to gain limited read-access to the device-filesystem within the embedded Qt browser.

  • CVE-2017-7937MedMay 19, 2017
    risk 0.26cvss 4.0epss 0.01

    An Improper Authentication issue was discovered in Phoenix Contact GmbH mGuard firmware versions 8.3.0 to 8.4.2. An attacker may be able to gain unauthorized access to the user firewall when RADIUS servers are unreachable.

  • CVE-2023-37857LowAug 9, 2023
    risk 0.25cvss 3.8epss 0.01

    In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic keys allowing the attacker to create valid session cookies. These session-cookies created by the attacker…

  • CVE-2014-9195Jan 17, 2015
    risk 0.09cvss epss 0.81

    Phoenix Contact ProConOs and MultiProg do not require authentication, which allows remote attackers to execute arbitrary commands via protocol-compliant traffic.

  • CVE-2015-3966Aug 30, 2015
    risk 0.00cvss epss 0.02

    The IPsec SA establishment process on Innominate mGuard devices with firmware 8.x before 8.1.7 allows remote authenticated users to cause a denial of service (VPN service restart) by leveraging a peer relationship to send a crafted configuration with compression.

  • CVE-2014-9193Dec 20, 2014
    risk 0.00cvss epss 0.03

    Innominate mGuard with firmware before 7.6.6 and 8.x before 8.1.4 allows remote authenticated admins to obtain root privileges by changing a PPP configuration setting.

  • CVE-2014-2356Jul 30, 2014
    risk 0.00cvss epss 0.03

    Innominate mGuard before 7.6.4 and 8.x before 8.0.3 does not require authentication for snapshot downloads, which allows remote attackers to obtain sensitive information via a crafted HTTPS request.

  • CVE-2012-3006Jun 19, 2012
    risk 0.00cvss epss 0.01

    The Innominate mGuard Smart HW before HW-101130 and BD before BD-101030, mGuard industrial RS, mGuard delta HW before HW-103060 and BD before BD-211010, mGuard PCI, mGuard blade, and EAGLE mGuard appliances with software before 7.5.0 do not use a sufficient source of entropy for…

  • CVE-2008-7199Sep 10, 2009
    risk 0.00cvss epss 0.01

    Phoenix Contact FL IL 24 BK-PAC allows remote attackers to cause a denial of service (hang) via (1) unspecified manipulations as demonstrated by a Nessus scan or (2) malformed input to TCP port 502.

Page 4 of 4