Vulnerability Details CVE-2023-0757
Incorrect Permission Assignment for Critical Resource vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated remote attacker to upload arbitrary malicious code and gain full access on the affected device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.3%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-0757
-
cpe:2.3:a:phoenixcontact:multiprog:-
-
cpe:2.3:a:phoenixcontact:proconos_eclr:-