Vulnerabilities
Vulnerable Software
Phoenixcontact:  Security Vulnerabilities
An unauthenticated local attacker can inject a command that is subsequently executed as root, leading to a privilege escalation.
CVSS Score
8.4
EPSS Score
0.001
Published
2025-07-08
An unauthenticated remote attacker can use MQTT messages to crash a service on charging stations complying with German Calibration Law, resulting in a temporary denial-of-service for these stations until they got restarted by the watchdog.
CVSS Score
5.3
EPSS Score
0.001
Published
2025-07-08
An unauthenticated remote attacker can use MQTT messages to trigger out-of-bounds writes in charging stations complying with German Calibration Law, resulting in a loss of integrity for only EichrechtAgents and potential denial-of-service for these stations.
CVSS Score
8.2
EPSS Score
0.001
Published
2025-07-08
An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data.
CVSS Score
8.8
EPSS Score
0.005
Published
2024-09-10
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP FW_INCOMING.IN_IP FW_OUTGOING.FROM_IP FW_OUTGOING.IN_IP environment variable which can lead to a DoS.
CVSS Score
8.1
EPSS Score
0.009
Published
2024-09-10
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP FW_INCOMING.IN_IP FW_OUTGOING.FROM_IP FW_OUTGOING.IN_IP FW_RULESETS.FROM_IP FW_RULESETS.IN_IP environment variable which can lead to a DoS.
CVSS Score
8.1
EPSS Score
0.009
Published
2024-09-10
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks.
CVSS Score
5.7
EPSS Score
0.001
Published
2024-09-10
A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY, OSPF_INTERFACE.DIGEST_KEY environment variables which can lead to a DoS.
CVSS Score
8.1
EPSS Score
0.005
Published
2024-09-10
A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding or NAT through the FW_NAT.IN_IP environment variable which can lead to a DoS.
CVSS Score
8.1
EPSS Score
0.005
Published
2024-09-10
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_PORTFORWARDING.SRC_IP environment variable which can lead to a DoS.
CVSS Score
8.1
EPSS Score
0.009
Published
2024-09-10


Contact Us

Shodan ® - All rights reserved